2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-28697 | MEDIUM | 6.8 | 0.4% | Aug 18, 2022 | Improper access control in firmware for Intel(R) AMT and Intel(R) Standard Manageability may allow an unauthenticated us... |
| CVE-2022-37770 | MEDIUM | 6.5 | 0.6% | Aug 18, 2022 | libjpeg commit 281daa9 was discovered to contain a segmentation fault via LineMerger::GetNextLowpassLine at linemerger.c... |
| CVE-2022-37769 | MEDIUM | 6.5 | 0.6% | Aug 18, 2022 | libjpeg commit 281daa9 was discovered to contain a segmentation fault via HuffmanDecoder::Get at huffmandecoder.hpp. Thi... |
| CVE-2022-35213 | MEDIUM | 6.1 | 0.5% | Aug 18, 2022 | Ecommerce-CodeIgniter-Bootstrap before commit 56465f was discovered to contain a cross-site scripting (XSS) vulnerabilit... |
| CVE-2022-35212 | MEDIUM | 6.1 | 0.5% | Aug 18, 2022 | osCommerce2 before v2.3.4.1 was discovered to contain a cross-site scripting (XSS) vulnerability via the function tep_db... |
| CVE-2022-2568 | MEDIUM | 6.5 | 0.8% | Aug 18, 2022 | A privilege escalation flaw was found in the Ansible Automation Platform. This flaw allows a remote authenticated user w... |
| CVE-2022-29507 | MEDIUM | 5.5 | 0.2% | Aug 18, 2022 | Insufficiently protected credentials in the Intel(R) Team Blue mobile application in all versions may allow an authentic... |
| CVE-2022-28709 | MEDIUM | 4.4 | 0.2% | Aug 18, 2022 | Improper access control in the firmware for some Intel(R) E810 Ethernet Controllers before version 1.6.1.9 may allow a p... |
| CVE-2022-27500 | MEDIUM | 5.5 | 0.2% | Aug 18, 2022 | Incorrect default permissions for the Intel(R) Support Android application before 21.07.40 may allow an authenticated us... |
| CVE-2022-26373 | MEDIUM | 5.5 | 0.4% | Aug 18, 2022 | Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized... |
| CVE-2022-26074 | MEDIUM | 4.4 | 0.2% | Aug 18, 2022 | Incomplete cleanup in a firmware subsystem for Intel(R) SPS before versions SPS_E3_04.08.04.330.0 and SPS_E3_04.01.04.53... |
| CVE-2022-25228 | MEDIUM | 6.5 | 0.8% | Aug 18, 2022 | CandidATS Version 3.0.0 Beta allows an authenticated user to inject SQL queries in '/index.php?m=settings&a=show' via th... |
| CVE-2022-24378 | MEDIUM | 5.5 | 0.2% | Aug 18, 2022 | Improper initialization in the Intel(R) Data Center Manager software before version 4.1 may allow an authenticated user ... |
| CVE-2022-23403 | MEDIUM | 5.5 | 0.2% | Aug 18, 2022 | Improper input validation in the Intel(R) Data Center Manager software before version 4.1 may allow an authenticated use... |
| CVE-2022-21793 | MEDIUM | 5.5 | 0.2% | Aug 18, 2022 | Insufficient control flow management in the Intel(R) Ethernet 500 Series Controller drivers for VMWare before version 1.... |
| CVE-2022-21240 | MEDIUM | 4.4 | 0.2% | Aug 18, 2022 | Out of bounds read for some Intel(R) PROSet/Wireless WiFi products may allow a privileged user to potentially enable inf... |
| CVE-2022-21233 | MEDIUM | 5.5 | 0.3% | Aug 18, 2022 | Improper isolation of shared resources in some Intel(R) Processors may allow a privileged user to potentially enable inf... |
| CVE-2022-21212 | MEDIUM | 6.5 | 0.3% | Aug 18, 2022 | Improper input validation for some Intel(R) PROSet/Wireless WiFi products may allow an unauthenticated user to potential... |
| CVE-2022-21172 | MEDIUM | 6.7 | 0.2% | Aug 18, 2022 | Out of bounds write for some Intel(R) PROSet/Wireless WiFi products may allow a privileged user to potentially enable es... |
| CVE-2022-21152 | MEDIUM | 5.5 | 0.2% | Aug 18, 2022 | Improper access control in the Intel(R) Edge Insights for Industrial software before version 2.6.1 may allow an authenti... |
| CVE-2022-21140 | MEDIUM | 5.5 | 0.2% | Aug 18, 2022 | Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow a privileged user ... |
| CVE-2022-35204 | MEDIUM | 4.3 | 1.1% | Aug 18, 2022 | Vitejs Vite before v2.9.13 was discovered to allow attackers to perform a directory traversal via a crafted URL to the v... |
| CVE-2022-37063 | MEDIUM | 5.4 | 1.3% | Aug 18, 2022 | All FLIR AX8 thermal sensor cameras versions up to and including 1.46.16 are vulnerable to Cross Site Scripting (XSS) du... |
| CVE-2022-35174 | MEDIUM | 5.4 | 0.6% | Aug 18, 2022 | A stored cross-site scripting (XSS) vulnerability in Kirby's Starterkit v3.7.0.2 allows attackers to execute arbitrary w... |
| CVE-2022-36023 | MEDIUM | 5.3 | 0.9% | Aug 18, 2022 | Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applica... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now