2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-46395 | HIGH | 8.8 | 2.7% | Mar 6, 2023 | An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operat... |
| CVE-2022-2178 | MEDIUM | 6.1 | 0.4% | Mar 6, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saysis Computer St... |
| CVE-2022-4862 | HIGH | 7.6 | 0.4% | Mar 6, 2023 | Rendering of HTML provided by another authenticated user is possible in browser on M-Files Web before 22.12.12140.3. Thi... |
| CVE-2022-3284 | HIGH | 7.5 | 0.7% | Mar 6, 2023 | Download key for a file in a vault was passed in an insecure way that could easily be logged in M-Files New Web in M-Fil... |
| CVE-2022-44875 | MEDIUM | 5.4 | 0.6% | Mar 6, 2023 | KioWare through 8.33 on Windows sets KioScriptingUrlACL.AclActions.AllowHigh for the about:blank origin, which allows at... |
| CVE-2022-4929 | MEDIUM | 6.1 | 0.5% | Mar 6, 2023 | A vulnerability was found in icplayer up to 0.818. It has been rated as problematic. Affected by this issue is some unkn... |
| CVE-2022-4928 | MEDIUM | 6.1 | 0.5% | Mar 6, 2023 | A vulnerability was found in icplayer up to 0.819. It has been declared as problematic. Affected by this vulnerability i... |
| CVE-2022-4927 | MEDIUM | 6.1 | 0.5% | Mar 5, 2023 | A vulnerability was found in ualbertalib NEOSDiscovery 1.0.70 and classified as problematic. This issue affects some unk... |
| CVE-2022-46973 | CRITICAL | 9.8 | 0.8% | Mar 3, 2023 | Report v0.9.8.6 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability. |
| CVE-2022-4645 | MEDIUM | 5.5 | 0.4% | Mar 3, 2023 | LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948, allowing attackers to cause a denial-of-service... |
| CVE-2022-41862 | LOW | 3.7 | 0.6% | Mar 3, 2023 | In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos t... |
| CVE-2022-2837 | MEDIUM | 6.1 | 0.4% | Mar 3, 2023 | A flaw was found in coreDNS. This flaw allows a malicious user to redirect traffic intended for external top-level domai... |
| CVE-2022-2835 | MEDIUM | 4.4 | 0.2% | Mar 3, 2023 | A flaw was found in coreDNS. This flaw allows a malicious user to reroute internal calls to some internal services that ... |
| CVE-2022-47665 | HIGH | 7.8 | 0.3% | Mar 3, 2023 | Libde265 1.0.9 has a heap buffer overflow vulnerability in de265_image::set_SliceAddrRS(int, int, int) |
| CVE-2022-47664 | HIGH | 7.8 | 0.3% | Mar 3, 2023 | Libde265 1.0.9 is vulnerable to Buffer Overflow in ff_hevc_put_hevc_qpel_pixels_8_sse |
| CVE-2022-45988 | HIGH | 7.8 | 0.4% | Mar 3, 2023 | starsoftcomm CooCare 5.304 allows local attackers to escalate privileges and execute arbitrary commands via a crafted fi... |
| CVE-2022-45553 | CRITICAL | 9.8 | 1.5% | Mar 3, 2023 | An issue discovered in Shenzhen Zhibotong Electronics WBT WE1626 Router v 21.06.18 allows attacker to execute arbitrary ... |
| CVE-2022-45552 | HIGH | 7.5 | 0.8% | Mar 3, 2023 | An Insecure Permissions vulnerability in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to ... |
| CVE-2022-45551 | CRITICAL | 9.8 | 25.1% | Mar 3, 2023 | An issue discovered in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to escalate privilege... |
| CVE-2022-40633 | MEDIUM | 4.6 | 0.3% | Mar 2, 2023 | A malicious actor can clone access cards used to open control cabinets secured with Rittal CMC III locks. |
| CVE-2022-46501 | CRITICAL | 9.8 | 0.6% | Mar 2, 2023 | Accruent LLC Maintenance Connection 2021 (all) & 2022.2 was discovered to contain a SQL injection vulnerability via the ... |
| CVE-2022-35645 | MEDIUM | 5.4 | 0.5% | Mar 2, 2023 | IBM Maximo Asset Management 7.6.1.1, 7.6.1.2, 7.6.1.3 and IBM Maximo Application Suite 8.8 and 8.9 is vulnerable to stor... |
| CVE-2022-38734 | HIGH | 7.5 | 0.6% | Mar 2, 2023 | StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0.8 are susceptible to a Denial of Service (DoS) vuln... |
| CVE-2022-4901 | MEDIUM | 6.1 | 0.3% | Mar 1, 2023 | Multiple stored XSS vulnerabilities in Sophos Connect versions older than 2.2.90 allow Javascript code to run in the loc... |
| CVE-2022-48310 | MEDIUM | 5.5 | 0.1% | Mar 1, 2023 | An information disclosure vulnerability allows sensitive key material to be included in technical support archives in So... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now