2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-20180HIGH7.8In several functions of mali_gralloc_reference.cpp, there is a possible arbitrary code execution due to a missing bounds...
CVE-2022-2749HIGH8.8A vulnerability was found in SourceCodester Gym Management System. It has been declared as critical. Affected by this vu...
CVE-2022-38161HIGH7.5The Gumstix Overo SBC on the VSKS board through 2022-08-09, as used on the Orlan-10 and other platforms, allows unrestri...
CVE-2022-38155HIGH7.5TEE_Malloc in Samsung mTower through 0.3.0 allows a trusted application to achieve Excessive Memory Allocation via a lar...
CVE-2022-38150HIGH7.5In Varnish Cache 7.0.0, 7.0.1, 7.0.2, and 7.1.0, it is possible to cause the Varnish Server to assert and automatically ...
CVE-2022-37024HIGH8.8Zoho ManageEngine OpManager, OpManager Plus, OpManager MSP, Network Configuration Manager, NetFlow Analyzer, and OpUtils...
CVE-2022-37008HIGH7.5The recovery module has a vulnerability of bypassing the verification of an update package before use. Successful exploi...
CVE-2022-37007HIGH7.5The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect th...
CVE-2022-37006HIGH7.5Permission control vulnerability in the network module. Successful exploitation of this vulnerability may affect service...
CVE-2022-37005HIGH7.5The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affe...
CVE-2022-37004HIGH7.5The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of t...
CVE-2022-37001HIGH7.5The diag-router module has a vulnerability in intercepting excessive long and short instructions. Successful exploitatio...
CVE-2022-36923HIGH7.5Zoho ManageEngine OpManager, OpManager Plus, OpManager MSP, Network Configuration Manager, NetFlow Analyzer, Firewall An...
CVE-2022-35517HIGH8.8WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters: web_pskValue, wl_Method, wl...
CVE-2022-35290HIGH7.5Under certain conditions SAP Authenticator for Android allows an attacker to access information which would otherwise be...
CVE-2022-32245HIGH8.2SAP BusinessObjects Business Intelligence Platform (Open Document) - versions 420, 430, allows an unauthenticated attack...
CVE-2022-32189HIGH7.5A too-short encoded message can cause a panic in Float.GobDecode and Rat GobDecode in math/big in Go before 1.17.13 and ...
CVE-2022-31675HIGH7.5VMware vRealize Operations contains an authentication bypass vulnerability. An unauthenticated malicious actor with netw...
CVE-2022-31673HIGH8.8VMware vRealize Operations contains an information disclosure vulnerability. A low-privileged malicious actor with netwo...
CVE-2022-31672HIGH7.2VMware vRealize Operations contains a privilege escalation vulnerability. A malicious actor with administrative network ...
CVE-2022-30635HIGH7.5Uncontrolled recursion in Decoder.Decode in encoding/gob before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a p...
CVE-2022-30633HIGH7.5Uncontrolled recursion in Unmarshal in encoding/xml before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a panic ...
CVE-2022-30632HIGH7.5Uncontrolled recursion in Glob in path/filepath before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a panic due ...
CVE-2022-30631HIGH7.5Uncontrolled recursion in Reader.Read in compress/gzip before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a pan...
CVE-2022-30630HIGH7.5Uncontrolled recursion in Glob in io/fs before Go 1.17.12 and Go 1.18.4 allows an attacker to cause a panic due to stack...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now