2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41173 | MEDIUM | 5.5 | 0.2% | Oct 11, 2022 | Due to lack of proper memory management, when a victim opens manipulated AutoCAD (.dxf, TeighaTranslator.exe) file recei... |
| CVE-2022-41171 | MEDIUM | 5.5 | 0.2% | Oct 11, 2022 | Due to lack of proper memory management, when a victim opens manipulated CATIA4 Part (.model, CatiaTranslator.exe) file ... |
| CVE-2022-41169 | MEDIUM | 5.5 | 0.2% | Oct 11, 2022 | Due to lack of proper memory management, when a victim opens manipulated CATIA5 Part (.catpart, CatiaTranslator.exe) fil... |
| CVE-2022-41166 | MEDIUM | 5.5 | 0.2% | Oct 11, 2022 | Due to lack of proper memory management, when a victim opens manipulated Wavefront Object (.obj, ObjTranslator.exe) file... |
| CVE-2022-3140 | MEDIUM | 6.3 | 4.4% | Oct 11, 2022 | LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An addit... |
| CVE-2022-39807 | MEDIUM | 5.5 | 0.2% | Oct 11, 2022 | Due to lack of proper memory management, when a victim opens manipulated SolidWorks Drawing (.sldasm, CoreCadTranslator.... |
| CVE-2022-39800 | MEDIUM | 6.1 | 0.6% | Oct 11, 2022 | SAP BusinessObjects BI LaunchPad - versions 420, 430, is susceptible to script execution attack by an unauthenticated at... |
| CVE-2022-39015 | MEDIUM | 6.5 | 0.8% | Oct 11, 2022 | Under certain conditions, BOE AdminTools/ BOE SDK allows an attacker to access information which would otherwise be rest... |
| CVE-2022-35297 | MEDIUM | 5.4 | 0.5% | Oct 11, 2022 | The application SAP Enable Now does not sufficiently encode user-controlled inputs over the network before it is placed ... |
| CVE-2022-35296 | MEDIUM | 4.9 | 0.8% | Oct 11, 2022 | Under certain conditions, the application SAP BusinessObjects Business Intelligence Platform (Version Management System)... |
| CVE-2022-35226 | MEDIUM | 6.1 | 0.5% | Oct 11, 2022 | SAP Data Services Management allows an attacker to copy the data from a request and echoed into the application's immedi... |
| CVE-2022-31682 | MEDIUM | 4.9 | 0.6% | Oct 11, 2022 | VMware Aria Operations contains an arbitrary file read vulnerability. A malicious actor with administrative privileges m... |
| CVE-2022-38086 | MEDIUM | 4.3 | 0.3% | Oct 11, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Shortcodes Ultimate plugin <= 5.12.0 at WordPress leading to plugin p... |
| CVE-2022-20440 | MEDIUM | 5.5 | 0.1% | Oct 11, 2022 | In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android... |
| CVE-2022-20439 | MEDIUM | 5.5 | 0.1% | Oct 11, 2022 | In Messaging, There has unauthorized provider, this could cause Local Deny of Service.Product: AndroidVersions: Android ... |
| CVE-2022-20438 | MEDIUM | 5.5 | 0.1% | Oct 11, 2022 | In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android... |
| CVE-2022-20437 | MEDIUM | 5.5 | 0.2% | Oct 11, 2022 | In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android... |
| CVE-2022-20425 | MEDIUM | 5.5 | 0.1% | Oct 11, 2022 | In addAutomaticZenRule of ZenModeHelper.java, there is a possible permanent degradation of performance due to resource e... |
| CVE-2022-20423 | MEDIUM | 4.6 | 0.2% | Oct 11, 2022 | In rndis_set_response of rndis.c, there is a possible out of bounds write due to an integer overflow. This could lead to... |
| CVE-2022-20413 | MEDIUM | 5.5 | 0.3% | Oct 11, 2022 | In start of Threads.cpp, there is a possible way to record audio during a phone call due to a logic error in the code. T... |
| CVE-2022-20412 | MEDIUM | 6.7 | 0.1% | Oct 11, 2022 | In fdt_next_tag of fdt.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to lo... |
| CVE-2022-20409 | MEDIUM | 6.7 | 0.6% | Oct 11, 2022 | In io_identity_cow of io_uring.c, there is a possible way to corrupt memory due to a use after free. This could lead to ... |
| CVE-2022-20394 | MEDIUM | 5 | 0.1% | Oct 11, 2022 | In getInputMethodWindowVisibleHeight of InputMethodManagerService.java, there is a possible way to determine when anothe... |
| CVE-2022-20351 | MEDIUM | 5.5 | 0.1% | Oct 11, 2022 | In queryInternal of CallLogProvider.java, there is a possible access to voicemail information due to SQL injection. This... |
| CVE-2022-41035 | MEDIUM | 5.3 | 1.3% | Oct 11, 2022 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now