2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-47939 | CRITICAL | 9.8 | 46.4% | Dec 23, 2022 | An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c has a use-after... |
| CVE-2022-47938 | MEDIUM | 6.5 | 58.5% | Dec 23, 2022 | An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2misc.c has an out-of-... |
| CVE-2022-38757 | HIGH | 7.2 | 0.8% | Dec 23, 2022 | A vulnerability has been identified in Micro Focus ZENworks 2020 Update 3a and prior versions. This vulnerability allows... |
| CVE-2022-46642 | CRITICAL | 9.9 | 3.1% | Dec 23, 2022 | D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the auto_upgrade_hour paramet... |
| CVE-2022-46641 | CRITICAL | 9.9 | 3.1% | Dec 23, 2022 | D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the lan(0)_dhcps_staticlist p... |
| CVE-2022-44567 | CRITICAL | 9.8 | 1.7% | Dec 23, 2022 | A command injection vulnerability exists in Rocket.Chat-Desktop <3.8.14 that could allow an attacker to pass a malicious... |
| CVE-2022-44565 | MEDIUM | 5.3 | 0.4% | Dec 23, 2022 | An improper access validation vulnerability exists in airMAX AC <8.7.11, airFiber 60/LR <2.6.2, airFiber 60 XG/HD <v1.0.... |
| CVE-2022-43551 | HIGH | 7.5 | 17.0% | Dec 23, 2022 | A vulnerability exists in curl <7.87.0 HSTS check that could be bypassed to trick it to keep using HTTP. Using its HSTS ... |
| CVE-2022-23547 | CRITICAL | 9.8 | 0.9% | Dec 23, 2022 | PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto... |
| CVE-2022-47524 | MEDIUM | 5.4 | 0.4% | Dec 23, 2022 | F-Secure SAFE Browser 19.1 before 19.2 for Android allows an IDN homograph attack. |
| CVE-2022-46171 | HIGH | 7.7 | 1.0% | Dec 23, 2022 | Tauri is a framework for building binaries for all major desktop platforms. The filesystem glob pattern wildcards `*`, `... |
| CVE-2022-4690 | MEDIUM | 5.4 | 0.6% | Dec 23, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4689 | HIGH | 8.8 | 0.7% | Dec 23, 2022 | Improper Access Control in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4688 | HIGH | 8.8 | 0.7% | Dec 23, 2022 | Improper Authorization in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4687 | HIGH | 8.1 | 0.6% | Dec 23, 2022 | Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4686 | CRITICAL | 9.8 | 0.7% | Dec 23, 2022 | Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4685 | — | — | — | Dec 23, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. Al... |
| CVE-2022-4684 | HIGH | 8.8 | 0.6% | Dec 23, 2022 | Improper Access Control in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4683 | MEDIUM | 6.5 | 0.4% | Dec 23, 2022 | Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-33324 | HIGH | 7.5 | 1.7% | Dec 23, 2022 | Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU F... |
| CVE-2022-4665 | HIGH | 8.8 | 0.8% | Dec 23, 2022 | Unrestricted Upload of File with Dangerous Type in GitHub repository ampache/ampache prior to 5.5.6. |
| CVE-2022-46492 | MEDIUM | 6.5 | 0.5% | Dec 23, 2022 | nbnbk commit 879858451d53261d10f77d4709aee2d01c72c301 was discovered to contain an arbitrary file read vulnerability via... |
| CVE-2022-47931 | CRITICAL | 9.1 | 0.5% | Dec 23, 2022 | IO FinNet tss-lib before 2.0.0 allows a collision of hash values. |
| CVE-2022-40899 | HIGH | 7.5 | 1.8% | Dec 23, 2022 | An issue discovered in Python Charmers Future 0.18.2 and earlier allows remote attackers to cause a denial of service vi... |
| CVE-2022-40898 | HIGH | 7.5 | 2.7% | Dec 23, 2022 | An issue discovered in Python Packaging Authority (PyPA) Wheel 0.37.1 and earlier allows remote attackers to cause a den... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now