2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32592 | MEDIUM | 6.7 | 0.1% | Oct 7, 2022 | In cpu dvfs, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation ... |
| CVE-2022-32590 | MEDIUM | 6.7 | 0.1% | Oct 7, 2022 | In wlan, there is a possible use after free due to an incorrect status check. This could lead to local escalation of pri... |
| CVE-2022-26475 | MEDIUM | 6.7 | 0.1% | Oct 7, 2022 | In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p... |
| CVE-2022-26474 | MEDIUM | 6.7 | 0.1% | Oct 7, 2022 | In sensorhub, there is a possible out of bounds write due to an incorrect calculation of buffer size. This could lead to... |
| CVE-2022-26473 | MEDIUM | 6.7 | 0.1% | Oct 7, 2022 | In vdec fmt, there is a possible use after free due to improper locking. This could lead to local escalation of privileg... |
| CVE-2022-26452 | MEDIUM | 6.7 | 0.1% | Oct 7, 2022 | In isp, there is a possible use after free due to improper locking. This could lead to local escalation of privilege wit... |
| CVE-2022-41392 | MEDIUM | 5.4 | 0.6% | Oct 7, 2022 | A cross-site scripting (XSS) vulnerability in TotalJS commit 8c2c8909 allows attackers to execute arbitrary web scripts ... |
| CVE-2022-37896 | MEDIUM | 6.1 | 0.5% | Oct 7, 2022 | A vulnerability in the Aruba InstantOS and ArubaOS 10 web management interface could allow a remote attacker to conduct ... |
| CVE-2022-37895 | MEDIUM | 4.9 | 0.7% | Oct 7, 2022 | An unauthenticated Denial of Service (DoS) vulnerability exists in the handling of certain SSID strings by Aruba Instant... |
| CVE-2022-37894 | MEDIUM | 6.5 | 0.4% | Oct 7, 2022 | An unauthenticated Denial of Service (DoS) vulnerability exists in the handling of certain SSID strings by Aruba Instant... |
| CVE-2022-41414 | MEDIUM | 5.3 | 0.4% | Oct 7, 2022 | An insecure default in the component auth.login.prompt.enabled of Liferay Portal v7.0.0 through v7.4.2 allows attackers ... |
| CVE-2022-37892 | MEDIUM | 5.4 | 0.6% | Oct 7, 2022 | A vulnerability in the Aruba InstantOS and ArubaOS 10 web management interface could allow an unauthenticated remote att... |
| CVE-2022-21936 | MEDIUM | 6.5 | 0.5% | Oct 7, 2022 | On Metasys ADX Server version 12.0 running MVE, an Active Directory user could execute validated actions without providi... |
| CVE-2022-41291 | MEDIUM | 6.5 | 0.3% | Oct 7, 2022 | IBM InfoSphere Information Server 11.7 does not invalidate session after logout which could allow an authenticated user ... |
| CVE-2022-36772 | MEDIUM | 6.5 | 0.5% | Oct 7, 2022 | IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information that should onl... |
| CVE-2022-34308 | MEDIUM | 5.5 | 0.2% | Oct 7, 2022 | IBM CICS TX 11.1 could allow a local user to cause a denial of service due to improper load handling. IBM X-Force ID: 22... |
| CVE-2022-30613 | MEDIUM | 5.5 | 0.2% | Oct 7, 2022 | IBM QRadar SIEM 7.4 and 7.5 could disclose sensitive information via a local service to a privileged user. IBM X-Force I... |
| CVE-2022-39878 | MEDIUM | 5.5 | 0.2% | Oct 7, 2022 | Improper access control vulnerability in Samsung Checkout prior to version 5.0.55.3 allows attackers to access sensitive... |
| CVE-2022-39877 | MEDIUM | 5.3 | 0.3% | Oct 7, 2022 | Improper access control vulnerability in ProfileSharingAccount in Group Sharing prior to versions 13.0.6.15 in Android S... |
| CVE-2022-39875 | MEDIUM | 4.4 | 0.2% | Oct 7, 2022 | Improper component protection vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized ... |
| CVE-2022-39874 | MEDIUM | 5.5 | 0.2% | Oct 7, 2022 | Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthori... |
| CVE-2022-39873 | MEDIUM | 4.6 | 0.2% | Oct 7, 2022 | Improper authorization vulnerability in Samsung Internet prior to version 18.0.4.14 allows physical attackers to add boo... |
| CVE-2022-39863 | MEDIUM | 4.7 | 0.3% | Oct 7, 2022 | Intent redirection vulnerability in Samsung Account prior to version 13.5.01.3 allows attackers to access content provid... |
| CVE-2022-39857 | MEDIUM | 5.5 | 0.2% | Oct 7, 2022 | Improper access control vulnerability in CameraTestActivity in FactoryCameraFB prior to version 3.5.51 allows attackers ... |
| CVE-2022-39855 | MEDIUM | 4.3 | 0.1% | Oct 7, 2022 | Improper access control vulnerability in FACM application prior to SMR Oct-2022 Release 1 allows a local attacker to con... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now