2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-46721 | HIGH | 7.8 | 0.2% | Jan 10, 2024 | The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13. An app may be able to ex... |
| CVE-2022-45793 | HIGH | 7.8 | 0.2% | Jan 10, 2024 | Sysmac Studio installs executables in a directory with poor permissions. This can allow a locally-authenticated attacker... |
| CVE-2022-48618 | HIGH | 7 | 0.5% | Jan 9, 2024 | The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.1, watchOS 9.2, iOS 16.2 and iPadO... |
| CVE-2022-36765 | HIGH | 7.8 | 0.3% | Jan 9, 2024 | EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buf... |
| CVE-2022-36764 | HIGH | 7.8 | 0.3% | Jan 9, 2024 | EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer ov... |
| CVE-2022-36763 | HIGH | 7.8 | 0.3% | Jan 9, 2024 | EDK2 is susceptible to a vulnerability in the Tcg2MeasureGptTable() function, allowing a user to trigger a heap buffer o... |
| CVE-2022-40696 | HIGH | 7.5 | 0.5% | Jan 8, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WP Engine Advanced Custom Fields (ACF).This ... |
| CVE-2022-36352 | HIGH | 8.8 | 0.4% | Jan 8, 2024 | Missing Authorization vulnerability in Profilegrid ProfileGrid – User Profiles, Memberships, Groups and Communities.This... |
| CVE-2022-34344 | HIGH | 8.8 | 0.5% | Jan 8, 2024 | Missing Authorization vulnerability in Rymera Web Co Wholesale Suite – WooCommerce Wholesale Prices, B2B, Catalog Mode, ... |
| CVE-2022-45354 | HIGH | 7.5 | 38.1% | Jan 8, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WPChill Download Monitor.This issue affects ... |
| CVE-2022-3328 | HIGH | 7 | 0.4% | Jan 8, 2024 | Race condition in snap-confine's must_mkdir_and_open_with_perms() |
| CVE-2022-2602 | HIGH | 7 | 1.3% | Jan 8, 2024 | io_uring UAF, Unix SCM garbage collection |
| CVE-2022-2588 | HIGH | 7.8 | 5.9% | Jan 8, 2024 | It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the h... |
| CVE-2022-2586 | HIGH | 7.8 | 12.7% | Jan 8, 2024 | It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-a... |
| CVE-2022-2585 | HIGH | 7.8 | 1.3% | Jan 8, 2024 | It was discovered that when exec'ing from a non-leader thread, armed POSIX CPU timers would be left on a list but freed,... |
| CVE-2022-2081 | HIGH | 7.5 | 0.6% | Jan 4, 2024 | A vulnerability exists in the HCI Modbus TCP function included in the product versions listed above. If the HCI Modbus T... |
| CVE-2022-3010 | HIGH | 7.5 | 0.5% | Jan 2, 2024 | The Priva TopControl Suite contains predictable credentials for the SSH service, based on the Serial number. Which makes... |
| CVE-2022-46487 | HIGH | 7.8 | 0.6% | Dec 30, 2023 | Improper initialization of x87 and SSE floating-point configuration registers in the __scone_entry component of SCONE be... |
| CVE-2022-44589 | HIGH | 7.5 | 0.7% | Dec 29, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in miniOrange miniOrange's Google Authenticator... |
| CVE-2022-36399 | HIGH | 7.5 | 0.4% | Dec 28, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in BoxyStudio Booked - Appointment Booking for ... |
| CVE-2022-39822 | HIGH | 8.8 | 0.6% | Dec 25, 2023 | In NOKIA NFM-T R19.9, a SQL Injection vulnerability occurs in /cgi-bin/R19.9/easy1350.pl of the VM Manager WebUI via the... |
| CVE-2022-39818 | HIGH | 8.8 | 2.2% | Dec 25, 2023 | In NOKIA NFM-T R19.9, an OS Command Injection vulnerability occurs in /cgi-bin/R19.9/log.pl of the VM Manager WebUI via ... |
| CVE-2022-39337 | HIGH | 7.5 | 1.1% | Dec 22, 2023 | Hertzbeat is an open source, real-time monitoring system with custom-monitoring, high performance cluster, prometheus-li... |
| CVE-2022-47599 | HIGH | 7.2 | 0.5% | Dec 20, 2023 | Deserialization of Untrusted Data vulnerability in File Manager by Bit Form Team File Manager – 100% Free & Open Source ... |
| CVE-2022-47597 | HIGH | 7.5 | 0.6% | Dec 20, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Popup Maker Popup Maker – Popup for opt-ins,... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now