2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-2849 | HIGH | 7.8 | 0.5% | Aug 17, 2022 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0220. |
| CVE-2022-38149 | HIGH | 7.5 | 0.7% | Aug 17, 2022 | HashiCorp Consul Template up to 0.27.2, 0.28.2, and 0.29.1 may expose the contents of Vault secrets in the error returne... |
| CVE-2022-36186 | HIGH | 7.5 | 0.8% | Aug 17, 2022 | A Null Pointer dereference vulnerability exists in GPAC 2.1-DEV-revUNKNOWN-master via the function gf_filter_pid_set_pro... |
| CVE-2022-31262 | HIGH | 7.8 | 0.5% | Aug 17, 2022 | An exploitable local privilege escalation vulnerability exists in GOG Galaxy 2.0.46. Due to insufficient folder permissi... |
| CVE-2022-30262 | HIGH | 7.8 | 0.2% | Aug 17, 2022 | The Emerson ControlWave 'Next Generation' RTUs through 2022-05-02 mishandle firmware integrity. They utilize the BSAP-IP... |
| CVE-2022-2845 | HIGH | 7.8 | 0.5% | Aug 17, 2022 | Improper Validation of Specified Quantity in Input in GitHub repository vim/vim prior to 9.0.0218. |
| CVE-2022-37459 | HIGH | 7.8 | 0.2% | Aug 17, 2022 | Ampere Altra devices before 1.08g and Ampere Altra Max devices before 2.05a allow attackers to control the predictions f... |
| CVE-2022-1410 | HIGH | 8.8 | 1.0% | Aug 17, 2022 | OS Command Injection vulnerability in the db_optimize component of Device42 Asset Management Appliance allows an authent... |
| CVE-2022-1401 | HIGH | 7.5 | 18.0% | Aug 17, 2022 | Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appli... |
| CVE-2022-38238 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::lookChar() at /xpdf/Stream.cc. |
| CVE-2022-38237 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readScan() at /xpdf/Stream.cc. |
| CVE-2022-38236 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a global-buffer overflow via Lexer::getObj(Object*) at /xpdf/Lexer.cc. |
| CVE-2022-38231 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::getChar() at /xpdf/Stream.cc. |
| CVE-2022-38229 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readHuffSym(DCTHuffTable*) at /xpdf/... |
| CVE-2022-38228 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::transformDataUnit at /xpdf/Stream.cc... |
| CVE-2022-38227 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a stack overflow via __asan_memcpy at asan_interceptors_memintrinsics.cpp. |
| CVE-2022-37781 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | fdkaac v1.0.3 was discovered to contain a heap buffer overflow via __interceptor_memcpy.part.46 at /sanitizer_common/san... |
| CVE-2022-36144 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | SWFMill commit 53d7690 was discovered to contain a heap-buffer overflow via base64_encode. |
| CVE-2022-36143 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | SWFMill commit 53d7690 was discovered to contain a heap-buffer overflow via __interceptor_strlen.part at /sanitizer_comm... |
| CVE-2022-36142 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | SWFMill commit 53d7690 was discovered to contain a heap-buffer overflow via SWF::Reader::getU30(). |
| CVE-2022-36139 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | SWFMill commit 53d7690 was discovered to contain a heap-buffer overflow via SWF::Writer::writeByte(unsigned char). |
| CVE-2022-35011 | HIGH | 8.8 | 0.9% | Aug 16, 2022 | PNGDec commit 8abf6be was discovered to contain a global buffer overflow via inflate_fast at /src/inffast.c. |
| CVE-2022-35003 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | JPEGDEC commit be4843c was discovered to contain a global buffer overflow via ucDitherBuffer at /src/jpeg.inl. |
| CVE-2022-34998 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | JPEGDEC commit be4843c was discovered to contain a global buffer overflow via JPEGDecodeMCU at /src/jpeg.inl. |
| CVE-2022-34255 | HIGH | 8.8 | 1.7% | Aug 16, 2022 | Adobe Commerce versions 2.4.3-p2 (and earlier), 2.3.7-p3 (and earlier) and 2.4.4 (and earlier) are affected by an Improp... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now