2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-1489HIGH8.8Out of bounds memory access in UI Shelf in Google Chrome on Chrome OS, Lacros prior to 101.0.4951.41 allowed a remote at...
CVE-2022-1487HIGH7.5Use after free in Ozone in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit heap co...
CVE-2022-1486HIGH8.8Type confusion in V8 in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to obtain potentially sensitive i...
CVE-2022-1485HIGH7.5Use after free in File System API in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially explo...
CVE-2022-1484HIGH8.8Heap buffer overflow in Web UI Settings in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially...
CVE-2022-1483HIGH8.8Heap buffer overflow in WebGPU in Google Chrome prior to 101.0.4951.41 allowed a remote attacker who had compromised the...
CVE-2022-1481HIGH8.8Use after free in Sharing in Google Chrome on Mac prior to 101.0.4951.41 allowed a remote attacker who convinced a user ...
CVE-2022-1479HIGH8.8Use after free in ANGLE in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit heap co...
CVE-2022-1478HIGH8.8Use after free in SwiftShader in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit h...
CVE-2022-1477HIGH8.8Use after free in Vulkan in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit heap c...
CVE-2022-1364HIGH8.8Type confusion in V8 Turbofan in Google Chrome prior to 100.0.4896.127 allowed a remote attacker to potentially exploit ...
CVE-2022-1671HIGH7.1A NULL pointer dereference flaw was found in rxrpc_preparse_s in net/rxrpc/server_key.c in the Linux kernel. This flaw a...
CVE-2022-1651HIGH7.1A memory leak flaw was found in the Linux kernel in acrn_dev_ioctl in the drivers/virt/acrn/hsm.c function in how the AC...
CVE-2022-35639HIGH7.5IBM Sterling Partner Engagement Manager 6.1, 6.2, and Cloud 22.2 do not limit the length of a connection which could cau...
CVE-2022-35286HIGH8.8IBM Security Verify Information Queue 10.0.2 is vulnerable to cross-site request forgery which could allow an attacker t...
CVE-2022-1648HIGH7.2Pandora FMS v7.0NG.760 and below allows a relative path traversal in File Manager where a privileged user could upload a...
CVE-2022-34067HIGH7.5Warehouse Management System v1.0 was discovered to contain a SQL injection vulnerability via the cari parameter.
CVE-2022-33745HIGH8.8insufficient TLB flush for x86 PV guests in shadow mode For migration as well as to work around kernels unaware of L1TF ...
CVE-2022-31879HIGH8.8Online Fire Reporting System 1.0 is vulnerable to SQL Injection via the date parameter.
CVE-2022-2225HIGH7.8By using warp-cli subcommands (disable-ethernet, disable-wifi), it was possible for a user without admin privileges to b...
CVE-2022-33977HIGH7.5untangle is a python library to convert XML data to python objects. untangle versions 1.2.0 and earlier improperly restr...
CVE-2022-31471HIGH7.5untangle is a python library to convert XML data to python objects. untangle versions 1.2.0 and earlier improperly restr...
CVE-2022-1042HIGH8.8In Zephyr bluetooth mesh core stack, an out-of-bound write vulnerability can be triggered during provisioning.
CVE-2022-1041HIGH8.8In Zephyr bluetooth mesh core stack, an out-of-bound write vulnerability can be triggered during provisioning.
CVE-2022-22686HIGH8Cross-Site Request Forgery (CSRF) vulnerability in webapi component in Synology Calendar before 2.3.4-0631 allows remote...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now