2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-36836MEDIUM5.5Unprotected provider vulnerability in Charm by Samsung prior to version 1.2.3 allows attackers to read connection state ...
CVE-2022-36834MEDIUM5Exposure of Sensitive Information vulnerability in Game Launcher prior to version 6.0.07 allows local attacker to access...
CVE-2022-36831MEDIUM5.5Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some ...
CVE-2022-36830MEDIUM5.5PendingIntent hijacking vulnerability in cancelAlarmManager in Charm by Samsung prior to version 1.2.3 allows local atta...
CVE-2022-36829MEDIUM5.5PendingIntent hijacking vulnerability in releaseAlarm in Charm by Samsung prior to version 1.2.3 allows local attackers ...
CVE-2022-36296MEDIUM5.3Broken Authentication vulnerability in JumpDEMAND Inc. ActiveDEMAND plugin <= 0.2.27 at WordPress allows unauthenticated...
CVE-2022-36284MEDIUM6.5Authenticated IDOR vulnerability in StoreApps Affiliate For WooCommerce premium plugin <= 4.7.0 at WordPress allows an a...
CVE-2022-34769MEDIUM5.5Michlol - rashim web interface Insecure direct object references (IDOR). First of all, the attacker needs to login. Afte...
CVE-2022-33734MEDIUM5.5Sensitive information exposure in onCharacteristicChanged in Charm by Samsung prior to version 1.2.3 allows attacker to ...
CVE-2022-33730MEDIUM6.8Heap-based buffer overflow vulnerability in Samsung Dex for PC prior to SMR Aug-2022 Release 1 allows arbitrary code exe...
CVE-2022-33727MEDIUM6.1A vulnerable code in onCreate of SecDevicePickerDialog prior to SMR Aug-2022 Release 1, allows attackers to trick the us...
CVE-2022-33723MEDIUM6.1A vulnerable code in onCreate of BluetoothScanDialog prior to SMR Aug-2022 Release 1, allows attackers to trick the user...
CVE-2022-33721MEDIUM5.5A vulnerability using PendingIntent in DeX for PC prior to SMR Aug-2022 Release 1 allows attackers to access files with ...
CVE-2022-33717MEDIUM4.4A missing input validation before memory read in SEM TA prior to SMR Aug-2022 Release 1 allows local attackers to read o...
CVE-2022-33716MEDIUM4.4An absence of variable initialization in ICCC TA prior to SMR Aug-2022 Release 1 allows local attacker to read uninitial...
CVE-2022-33715MEDIUM5.5Improper access control and path traversal vulnerability in LauncherProvider prior to SMR Aug-2022 Release 1 allow local...
CVE-2022-31663MEDIUM6.1VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a reflected cross-site scripting (XSS) vul...
CVE-2022-2539MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.6 prior to 15.0.5, 15.1 prior to 15...
CVE-2022-2534MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 9.3 before 15.0.5, all versions starti...
CVE-2022-2531MEDIUM5.3An issue has been discovered in GitLab EE affecting all versions starting from 12.5 before 15.0.5, all versions starting...
CVE-2022-2512MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 before 15.0.5, all versions start...
CVE-2022-2500MEDIUM5.4A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions before 15.0.5, 15.1 prior to 15....
CVE-2022-2499MEDIUM4.3An issue has been discovered in GitLab EE affecting all versions starting from 13.10 before 15.0.5, all versions startin...
CVE-2022-2497MEDIUM6.4An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.6 before 15.0.5, all versions start...
CVE-2022-2417MEDIUM4.5Insufficient validation in GitLab CE/EE affecting all versions from 12.10 prior to 15.0.5, 15.1 prior to 15.1.4, and 15....

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now