2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32747 | HIGH | 8.1 | 0.3% | Jan 30, 2023 | A CWE-290: Authentication Bypass by Spoofing vulnerability exists that could cause legitimate users to be locked out of ... |
| CVE-2022-32529 | CRITICAL | 9.8 | 1.3% | Jan 30, 2023 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo... |
| CVE-2022-32528 | CRITICAL | 9.1 | 0.5% | Jan 30, 2023 | A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause access to manipulate and ... |
| CVE-2022-32527 | CRITICAL | 9.8 | 1.3% | Jan 30, 2023 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo... |
| CVE-2022-32526 | CRITICAL | 9.8 | 1.3% | Jan 30, 2023 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo... |
| CVE-2022-32525 | CRITICAL | 9.8 | 1.3% | Jan 30, 2023 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo... |
| CVE-2022-32524 | CRITICAL | 9.8 | 1.3% | Jan 30, 2023 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo... |
| CVE-2022-32523 | CRITICAL | 9.8 | 1.3% | Jan 30, 2023 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo... |
| CVE-2022-32522 | CRITICAL | 9.8 | 1.1% | Jan 30, 2023 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo... |
| CVE-2022-32521 | HIGH | 8.8 | 0.5% | Jan 30, 2023 | A CWE 502: Deserialization of Untrusted Data vulnerability exists that could allow code to be remotely executed on the s... |
| CVE-2022-32520 | CRITICAL | 9.8 | 0.5% | Jan 30, 2023 | A CWE-522: Insufficiently Protected Credentials vulnerability exists that could result in unwanted access to a DCE insta... |
| CVE-2022-32519 | CRITICAL | 9.8 | 0.5% | Jan 30, 2023 | A CWE-257: Storing Passwords in a Recoverable Format vulnerability exists that could result in unwanted access to a DCE ... |
| CVE-2022-32518 | CRITICAL | 9.8 | 0.5% | Jan 30, 2023 | A CWE-522: Insufficiently Protected Credentials vulnerability exists that could result in unwanted access to a DCE insta... |
| CVE-2022-32517 | MEDIUM | 6.5 | 0.4% | Jan 30, 2023 | A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to t... |
| CVE-2022-32516 | MEDIUM | 6.5 | 0.2% | Jan 30, 2023 | A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists that could cause system’s configurations override and ... |
| CVE-2022-32515 | CRITICAL | 9.8 | 0.6% | Jan 30, 2023 | A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could cause brute force a... |
| CVE-2022-32514 | CRITICAL | 9.8 | 0.8% | Jan 30, 2023 | A CWE-287: Improper Authentication vulnerability exists that could allow an attacker to gain control of the device when ... |
| CVE-2022-32513 | CRITICAL | 9.8 | 0.7% | Jan 30, 2023 | A CWE-521: Weak Password Requirements vulnerability exists that could allow an attacker to gain control of the device wh... |
| CVE-2022-32512 | HIGH | 7.8 | 0.3% | Jan 30, 2023 | A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause... |
| CVE-2022-22732 | HIGH | 7.5 | 0.3% | Jan 30, 2023 | A CWE-668: Exposure of Resource to Wrong Sphere vulnerability exists that could cause all remote domains to access the r... |
| CVE-2022-22731 | CRITICAL | 9.8 | 0.8% | Jan 30, 2023 | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in a funct... |
| CVE-2022-0223 | CRITICAL | 9.8 | 0.8% | Jan 30, 2023 | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could... |
| CVE-2022-48006 | CRITICAL | 9.8 | 0.9% | Jan 30, 2023 | An arbitrary file upload vulnerability in taocms v3.0.2 allows attackers to execute arbitrary code via a crafted PHP fil... |
| CVE-2022-40137 | MEDIUM | 6.7 | 0.2% | Jan 30, 2023 | A buffer overflow in the WMI SMI Handler in some Lenovo models may allow an attacker with local access and elevated priv... |
| CVE-2022-40136 | MEDIUM | 4.4 | 0.2% | Jan 30, 2023 | An information leak vulnerability in SMI Handler used to configure platform settings over WMI in some Lenovo models may ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now