2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-44422MEDIUM5.5In music service, there is a missing permission check. This could lead to local denial of service in contacts service wi...
CVE-2022-39118MEDIUM5.5In sprd_sysdump driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local ...
CVE-2022-39116MEDIUM5.5In sprd_sysdump driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local ...
CVE-2022-39104MEDIUM5.5In contacts service, there is a missing permission check. This could lead to local denial of service in Contacts service...
CVE-2022-39088MEDIUM6.7In network service, there is a missing permission check. This could lead to local escalation of privilege with System ex...
CVE-2022-39087MEDIUM6.7In network service, there is a missing permission check. This could lead to local escalation of privilege with System ex...
CVE-2022-39086MEDIUM6.7In network service, there is a missing permission check. This could lead to local escalation of privilege with System ex...
CVE-2022-39085MEDIUM6.7In network service, there is a missing permission check. This could lead to local escalation of privilege with System ex...
CVE-2022-39084MEDIUM6.7In network service, there is a missing permission check. This could lead to local escalation of privilege with System ex...
CVE-2022-39083MEDIUM6.7In network service, there is a missing permission check. This could lead to local escalation of privilege with System ex...
CVE-2022-39082MEDIUM6.7In network service, there is a missing permission check. This could lead to local escalation of privilege with System ex...
CVE-2022-39081MEDIUM6.7In network service, there is a missing permission check. This could lead to local escalation of privilege with System ex...
CVE-2022-38684MEDIUM5.5In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service...
CVE-2022-38683MEDIUM5.5In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service...
CVE-2022-38682MEDIUM5.5In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service...
CVE-2022-38678MEDIUM5.5In contacts service, there is a missing permission check. This could lead to local denial of service in contacts service...
CVE-2022-46081HIGH7.5In Garmin Connect 4.61, terminating a LiveTrack session wouldn't prevent the LiveTrack API from continued exposure of pr...
CVE-2022-42435HIGH8.8 IBM Business Automation Workflow 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2...
CVE-2022-42710MEDIUM5.4Nice (formerly Nortek) Linear eMerge E3-Series 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e ...
CVE-2022-38723HIGH8.6Gravitee API Management before 3.15.13 allows path traversal through HTML injection.
CVE-2022-2967HIGH7.5Prosys OPC UA Simulation Server version prior to v5.3.0-64 and UA Modbus Server versions 1.4.18-5 and prior do not suffi...
CVE-2022-44036HIGH7.2In b2evolution 7.2.5, if configured with admins_can_manipulate_sensitive_files, arbitrary file upload is allowed for adm...
CVE-2022-38627CRITICAL9.8Nortek Linear eMerge E3-Series 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e were discovered ...
CVE-2022-36943HIGH8.1SSZipArchive versions 2.5.3 and older contain an arbitrary file write vulnerability due to lack of sanitization on paths...
CVE-2022-32665CRITICAL9.8In Boa, there is a possible command injection due to improper input validation. This could lead to remote escalation of ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now