2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32114 | HIGH | 8.8 | 1.6% | Jul 13, 2022 | An unrestricted file upload vulnerability in the Add New Assets function of Strapi 4.1.12 allows attackers to conduct XS... |
| CVE-2022-22982 | HIGH | 7.5 | 0.8% | Jul 13, 2022 | The vCenter Server contains a server-side request forgery (SSRF) vulnerability. A malicious actor with network access to... |
| CVE-2022-20236 | HIGH | 7.5 | 0.4% | Jul 13, 2022 | A drm driver have oob problem, could cause the system crash or EOPProduct: AndroidVersions: Android SoCAndroid ID: A-233... |
| CVE-2022-20234 | HIGH | 7.5 | 0.3% | Jul 13, 2022 | In Car Settings app, the NotificationAccessConfirmationActivity is exported. In NotificationAccessConfirmationActivity, ... |
| CVE-2022-20224 | HIGH | 7.5 | 1.0% | Jul 13, 2022 | In AT_SKIP_REST of bta_hf_client_at.cc, there is a possible out of bounds read due to an incorrect bounds check. This co... |
| CVE-2022-20223 | HIGH | 7.8 | 0.2% | Jul 13, 2022 | In assertSafeToStartCustomActivity of AppRestrictionsFragment.java, there is a possible way to start a phone call withou... |
| CVE-2022-20220 | HIGH | 7.8 | 0.2% | Jul 13, 2022 | In openFile of CallLogProvider.java, there is a possible permission bypass due to a path traversal error. This could lea... |
| CVE-2022-20218 | HIGH | 7.8 | 0.1% | Jul 13, 2022 | In PermissionController, there is a possible way to get and retain permissions without user's consent due to a logic err... |
| CVE-2022-20212 | HIGH | 7.8 | 0.1% | Jul 13, 2022 | In wifi.RequestToggleWifiActivity of AndroidManifest.xml, there is a possible EoP due to a tapjacking/overlay attack. Th... |
| CVE-2022-32096 | HIGH | 7.5 | 1.0% | Jul 13, 2022 | Rhonabwy before v1.1.5 was discovered to contain a buffer overflow via the component r_jwe_aesgcm_key_unwrap. This vulne... |
| CVE-2022-31781 | HIGH | 7.5 | 1.7% | Jul 13, 2022 | Apache Tapestry up to version 5.8.1 is vulnerable to Regular Expression Denial of Service (ReDoS) in the way it handles ... |
| CVE-2022-33678 | HIGH | 7.2 | 1.8% | Jul 12, 2022 | Azure Site Recovery Remote Code Execution Vulnerability |
| CVE-2022-33677 | HIGH | 7.2 | 1.8% | Jul 12, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
| CVE-2022-33676 | HIGH | 7.2 | 1.8% | Jul 12, 2022 | Azure Site Recovery Remote Code Execution Vulnerability |
| CVE-2022-33675 | HIGH | 7.8 | 0.6% | Jul 12, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
| CVE-2022-33674 | HIGH | 8.3 | 1.0% | Jul 12, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
| CVE-2022-33644 | HIGH | 7 | 0.4% | Jul 12, 2022 | Xbox Live Save Service Elevation of Privilege Vulnerability |
| CVE-2022-33633 | HIGH | 7.2 | 1.8% | Jul 12, 2022 | Skype for Business and Lync Remote Code Execution Vulnerability |
| CVE-2022-30226 | HIGH | 7.1 | 0.7% | Jul 12, 2022 | Windows Print Spooler Elevation of Privilege Vulnerability |
| CVE-2022-30225 | HIGH | 7.1 | 0.5% | Jul 12, 2022 | Windows Media Player Network Sharing Service Elevation of Privilege Vulnerability |
| CVE-2022-30224 | HIGH | 7 | 0.5% | Jul 12, 2022 | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability |
| CVE-2022-30222 | HIGH | 8.4 | 0.7% | Jul 12, 2022 | Windows Shell Remote Code Execution Vulnerability |
| CVE-2022-30221 | HIGH | 8.8 | 1.7% | Jul 12, 2022 | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2022-30220 | HIGH | 7.8 | 5.1% | Jul 12, 2022 | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2022-30216 | HIGH | 8.8 | 88.3% | Jul 12, 2022 | Windows Server Service Tampering Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now