2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-46395HIGH8.8An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operat...
CVE-2022-2178MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saysis Computer St...
CVE-2022-4862HIGH7.6Rendering of HTML provided by another authenticated user is possible in browser on M-Files Web before 22.12.12140.3. Thi...
CVE-2022-3284HIGH7.5Download key for a file in a vault was passed in an insecure way that could easily be logged in M-Files New Web in M-Fil...
CVE-2022-44875MEDIUM5.4KioWare through 8.33 on Windows sets KioScriptingUrlACL.AclActions.AllowHigh for the about:blank origin, which allows at...
CVE-2022-4929MEDIUM6.1A vulnerability was found in icplayer up to 0.818. It has been rated as problematic. Affected by this issue is some unkn...
CVE-2022-4928MEDIUM6.1A vulnerability was found in icplayer up to 0.819. It has been declared as problematic. Affected by this vulnerability i...
CVE-2022-4927MEDIUM6.1A vulnerability was found in ualbertalib NEOSDiscovery 1.0.70 and classified as problematic. This issue affects some unk...
CVE-2022-46973CRITICAL9.8Report v0.9.8.6 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability.
CVE-2022-4645MEDIUM5.5LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948, allowing attackers to cause a denial-of-service...
CVE-2022-41862LOW3.7In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos t...
CVE-2022-2837MEDIUM6.1A flaw was found in coreDNS. This flaw allows a malicious user to redirect traffic intended for external top-level domai...
CVE-2022-2835MEDIUM4.4A flaw was found in coreDNS. This flaw allows a malicious user to reroute internal calls to some internal services that ...
CVE-2022-47665HIGH7.8Libde265 1.0.9 has a heap buffer overflow vulnerability in de265_image::set_SliceAddrRS(int, int, int)
CVE-2022-47664HIGH7.8Libde265 1.0.9 is vulnerable to Buffer Overflow in ff_hevc_put_hevc_qpel_pixels_8_sse
CVE-2022-45988HIGH7.8starsoftcomm CooCare 5.304 allows local attackers to escalate privileges and execute arbitrary commands via a crafted fi...
CVE-2022-45553CRITICAL9.8An issue discovered in Shenzhen Zhibotong Electronics WBT WE1626 Router v 21.06.18 allows attacker to execute arbitrary ...
CVE-2022-45552HIGH7.5An Insecure Permissions vulnerability in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to ...
CVE-2022-45551CRITICAL9.8An issue discovered in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to escalate privilege...
CVE-2022-40633MEDIUM4.6A malicious actor can clone access cards used to open control cabinets secured with Rittal CMC III locks.
CVE-2022-46501CRITICAL9.8Accruent LLC Maintenance Connection 2021 (all) & 2022.2 was discovered to contain a SQL injection vulnerability via the ...
CVE-2022-35645MEDIUM5.4IBM Maximo Asset Management 7.6.1.1, 7.6.1.2, 7.6.1.3 and IBM Maximo Application Suite 8.8 and 8.9 is vulnerable to stor...
CVE-2022-38734HIGH7.5StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0.8 are susceptible to a Denial of Service (DoS) vuln...
CVE-2022-4901MEDIUM6.1Multiple stored XSS vulnerabilities in Sophos Connect versions older than 2.2.90 allow Javascript code to run in the loc...
CVE-2022-48310MEDIUM5.5An information disclosure vulnerability allows sensitive key material to be included in technical support archives in So...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now