2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-38739 | — | — | — | Mar 1, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2022-38738 | — | — | — | Mar 1, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2022-38737 | — | — | — | Mar 1, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2022-38736 | — | — | — | Mar 1, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2022-38735 | — | — | — | Mar 1, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2022-37938 | CRITICAL | 9.8 | 0.6% | Mar 1, 2023 | Unauthenticated server side request forgery in HPE Serviceguard Manager |
| CVE-2022-37937 | CRITICAL | 9.8 | 0.7% | Mar 1, 2023 | Pre-auth memory corruption in HPE Serviceguard |
| CVE-2022-37936 | CRITICAL | 9.8 | 0.8% | Mar 1, 2023 | Unauthenticated Java deserialization vulnerability in Serviceguard Manager |
| CVE-2022-37935 | MEDIUM | 5.5 | 0.2% | Mar 1, 2023 | HPE OneView for VMware vCenter, in certain circumstances, may disclose the “HPE OneView” Username and Password. |
| CVE-2022-27677 | HIGH | 7.8 | 0.2% | Mar 1, 2023 | Failure to validate privileges during installation of AMD Ryzen™ Master may allow an attacker with low privileges to mo... |
| CVE-2022-27672 | MEDIUM | 4.7 | 0.3% | Mar 1, 2023 | When SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling threa... |
| CVE-2022-20952 | MEDIUM | 5.3 | 0.7% | Mar 1, 2023 | A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance, formerly known as Cisc... |
| CVE-2022-38220 | MEDIUM | 6.1 | 0.7% | Mar 1, 2023 | An XSS vulnerability exists within Quest KACE Systems Management Appliance (SMA) through 12.1 that may allow remote inje... |
| CVE-2022-47076 | HIGH | 7.5 | 6.2% | Feb 28, 2023 | An issue was discovered in Smart Office Web 20.28 and earlier allows attackers to view sensitive information via Display... |
| CVE-2022-47075 | HIGH | 7.5 | 59.4% | Feb 28, 2023 | An issue was discovered in Smart Office Web 20.28 and earlier allows attackers to download sensitive information via the... |
| CVE-2022-23240 | MEDIUM | 6.5 | 0.4% | Feb 28, 2023 | Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions prior to 9.11P1 are susceptible to a... |
| CVE-2022-23239 | MEDIUM | 4.8 | 0.3% | Feb 28, 2023 | Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions prior to 9.11P1 are susceptible to a... |
| CVE-2022-41727 | MEDIUM | 5.5 | 0.3% | Feb 28, 2023 | An attacker can craft a malformed TIFF image which will consume a significant amount of memory when passed to DecodeConf... |
| CVE-2022-41725 | HIGH | 7.5 | 1.2% | Feb 28, 2023 | A denial of service is possible from excessive resource consumption in net/http and mime/multipart. Multipart form parsi... |
| CVE-2022-41724 | HIGH | 7.5 | 1.1% | Feb 28, 2023 | Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records wh... |
| CVE-2022-41723 | HIGH | 7.5 | 4.6% | Feb 28, 2023 | A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a de... |
| CVE-2022-41722 | HIGH | 7.5 | 1.7% | Feb 28, 2023 | A path traversal vulnerability exists in filepath.Clean on Windows. On Windows, the filepath.Clean function could transf... |
| CVE-2022-20551 | MEDIUM | 6.7 | 0.1% | Feb 28, 2023 | In createTrack of AudioFlinger.cpp, there is a possible way to record audio without a privacy indicator due to a logic e... |
| CVE-2022-20481 | MEDIUM | 5.5 | 0.1% | Feb 28, 2023 | In multiple files, there is a possible way to preserve WiFi settings due to residual data after a reset. This could lead... |
| CVE-2022-20455 | MEDIUM | 5.5 | 0.1% | Feb 28, 2023 | In addAutomaticZenRule of ZenModeHelper.java, there is a possible persistent denial of service due to resource exhaustio... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now