2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-38739Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2022-38738Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2022-38737Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2022-38736Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2022-38735Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2022-37938CRITICAL9.8Unauthenticated server side request forgery in HPE Serviceguard Manager
CVE-2022-37937CRITICAL9.8Pre-auth memory corruption in HPE Serviceguard
CVE-2022-37936CRITICAL9.8Unauthenticated Java deserialization vulnerability in Serviceguard Manager
CVE-2022-37935MEDIUM5.5HPE OneView for VMware vCenter, in certain circumstances, may disclose the “HPE OneView” Username and Password.
CVE-2022-27677HIGH7.8 Failure to validate privileges during installation of AMD Ryzen™ Master may allow an attacker with low privileges to mo...
CVE-2022-27672MEDIUM4.7When SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling threa...
CVE-2022-20952MEDIUM5.3A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance, formerly known as Cisc...
CVE-2022-38220MEDIUM6.1An XSS vulnerability exists within Quest KACE Systems Management Appliance (SMA) through 12.1 that may allow remote inje...
CVE-2022-47076HIGH7.5An issue was discovered in Smart Office Web 20.28 and earlier allows attackers to view sensitive information via Display...
CVE-2022-47075HIGH7.5An issue was discovered in Smart Office Web 20.28 and earlier allows attackers to download sensitive information via the...
CVE-2022-23240MEDIUM6.5Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions prior to 9.11P1 are susceptible to a...
CVE-2022-23239MEDIUM4.8Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions prior to 9.11P1 are susceptible to a...
CVE-2022-41727MEDIUM5.5An attacker can craft a malformed TIFF image which will consume a significant amount of memory when passed to DecodeConf...
CVE-2022-41725HIGH7.5A denial of service is possible from excessive resource consumption in net/http and mime/multipart. Multipart form parsi...
CVE-2022-41724HIGH7.5Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records wh...
CVE-2022-41723HIGH7.5A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a de...
CVE-2022-41722HIGH7.5A path traversal vulnerability exists in filepath.Clean on Windows. On Windows, the filepath.Clean function could transf...
CVE-2022-20551MEDIUM6.7In createTrack of AudioFlinger.cpp, there is a possible way to record audio without a privacy indicator due to a logic e...
CVE-2022-20481MEDIUM5.5In multiple files, there is a possible way to preserve WiFi settings due to residual data after a reset. This could lead...
CVE-2022-20455MEDIUM5.5In addAutomaticZenRule of ZenModeHelper.java, there is a possible persistent denial of service due to resource exhaustio...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now