2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-28697MEDIUM6.8Improper access control in firmware for Intel(R) AMT and Intel(R) Standard Manageability may allow an unauthenticated us...
CVE-2022-37770MEDIUM6.5libjpeg commit 281daa9 was discovered to contain a segmentation fault via LineMerger::GetNextLowpassLine at linemerger.c...
CVE-2022-37769MEDIUM6.5libjpeg commit 281daa9 was discovered to contain a segmentation fault via HuffmanDecoder::Get at huffmandecoder.hpp. Thi...
CVE-2022-35213MEDIUM6.1Ecommerce-CodeIgniter-Bootstrap before commit 56465f was discovered to contain a cross-site scripting (XSS) vulnerabilit...
CVE-2022-35212MEDIUM6.1osCommerce2 before v2.3.4.1 was discovered to contain a cross-site scripting (XSS) vulnerability via the function tep_db...
CVE-2022-2568MEDIUM6.5A privilege escalation flaw was found in the Ansible Automation Platform. This flaw allows a remote authenticated user w...
CVE-2022-29507MEDIUM5.5Insufficiently protected credentials in the Intel(R) Team Blue mobile application in all versions may allow an authentic...
CVE-2022-28709MEDIUM4.4Improper access control in the firmware for some Intel(R) E810 Ethernet Controllers before version 1.6.1.9 may allow a p...
CVE-2022-27500MEDIUM5.5Incorrect default permissions for the Intel(R) Support Android application before 21.07.40 may allow an authenticated us...
CVE-2022-26373MEDIUM5.5Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized...
CVE-2022-26074MEDIUM4.4Incomplete cleanup in a firmware subsystem for Intel(R) SPS before versions SPS_E3_04.08.04.330.0 and SPS_E3_04.01.04.53...
CVE-2022-25228MEDIUM6.5CandidATS Version 3.0.0 Beta allows an authenticated user to inject SQL queries in '/index.php?m=settings&a=show' via th...
CVE-2022-24378MEDIUM5.5Improper initialization in the Intel(R) Data Center Manager software before version 4.1 may allow an authenticated user ...
CVE-2022-23403MEDIUM5.5Improper input validation in the Intel(R) Data Center Manager software before version 4.1 may allow an authenticated use...
CVE-2022-21793MEDIUM5.5Insufficient control flow management in the Intel(R) Ethernet 500 Series Controller drivers for VMWare before version 1....
CVE-2022-21240MEDIUM4.4Out of bounds read for some Intel(R) PROSet/Wireless WiFi products may allow a privileged user to potentially enable inf...
CVE-2022-21233MEDIUM5.5Improper isolation of shared resources in some Intel(R) Processors may allow a privileged user to potentially enable inf...
CVE-2022-21212MEDIUM6.5Improper input validation for some Intel(R) PROSet/Wireless WiFi products may allow an unauthenticated user to potential...
CVE-2022-21172MEDIUM6.7Out of bounds write for some Intel(R) PROSet/Wireless WiFi products may allow a privileged user to potentially enable es...
CVE-2022-21152MEDIUM5.5Improper access control in the Intel(R) Edge Insights for Industrial software before version 2.6.1 may allow an authenti...
CVE-2022-21140MEDIUM5.5Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow a privileged user ...
CVE-2022-35204MEDIUM4.3Vitejs Vite before v2.9.13 was discovered to allow attackers to perform a directory traversal via a crafted URL to the v...
CVE-2022-37063MEDIUM5.4All FLIR AX8 thermal sensor cameras versions up to and including 1.46.16 are vulnerable to Cross Site Scripting (XSS) du...
CVE-2022-35174MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Kirby's Starterkit v3.7.0.2 allows attackers to execute arbitrary w...
CVE-2022-36023MEDIUM5.3Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applica...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now