2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-1662 | MEDIUM | 5.5 | 0.2% | Jul 14, 2022 | In convert2rhel, there's an ansible playbook named ansible/run-convert2rhel.yml which passes the Red Hat Subscription Ma... |
| CVE-2022-2396 | MEDIUM | 5.4 | 0.5% | Jul 14, 2022 | A vulnerability classified as problematic was found in SourceCodester Simple e-Learning System 1.0. Affected by this vul... |
| CVE-2022-25803 | MEDIUM | 6.1 | 0.4% | Jul 14, 2022 | Best Practical Request Tracker (RT) before 5.0.3 has an Open Redirect via a ticket search. |
| CVE-2022-25802 | MEDIUM | 6.1 | 0.6% | Jul 14, 2022 | Best Practical Request Tracker (RT) before 4.4.6 and 5.x before 5.0.3 allows XSS via a crafted content type for an attac... |
| CVE-2022-34765 | MEDIUM | 5.3 | 0.5% | Jul 13, 2022 | A CWE-73: External Control of File Name or Path vulnerability exists that could cause loading of unauthorized firmware i... |
| CVE-2022-34758 | MEDIUM | 4.9 | 0.4% | Jul 13, 2022 | A CWE-20: Improper Input Validation vulnerability exists that could cause the device watchdog function to be disabled if... |
| CVE-2022-34757 | MEDIUM | 5.3 | 0.3% | Jul 13, 2022 | A CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists where weak cipher suites can be used fo... |
| CVE-2022-34754 | MEDIUM | 6.8 | 0.3% | Jul 13, 2022 | A CWE-269: Improper Privilege Management vulnerability exists that could allow elevated functionality when guessing cred... |
| CVE-2022-31145 | MEDIUM | 6.5 | 0.8% | Jul 13, 2022 | FlyteAdmin is the control plane for Flyte responsible for managing entities and administering workflow executions. In ve... |
| CVE-2022-32308 | MEDIUM | 6.1 | 0.5% | Jul 13, 2022 | Cross Site Scripting (XSS) vulnerability in uBlock Origin extension before 1.41.1 allows remote attackers to run arbitra... |
| CVE-2022-2380 | MEDIUM | 5.5 | 0.2% | Jul 13, 2022 | The Linux kernel was found vulnerable out of bounds memory access in the drivers/video/fbdev/sm712fb.c:smtcfb_read() fun... |
| CVE-2022-20230 | MEDIUM | 5.5 | 0.1% | Jul 13, 2022 | In choosePrivateKeyAlias of KeyChain.java, there is a possible access to the user's certificate due to improper input va... |
| CVE-2022-20228 | MEDIUM | 6.5 | 0.5% | Jul 13, 2022 | In various functions of C2DmaBufAllocator.cpp, there is a possible memory corruption due to a use after free. This could... |
| CVE-2022-20227 | MEDIUM | 5.5 | 0.1% | Jul 13, 2022 | In USB driver, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local informatio... |
| CVE-2022-20225 | MEDIUM | 5.5 | 0.1% | Jul 13, 2022 | In getSubscriptionProperty of SubscriptionController.java, there is a possible read of a sensitive identifier due to a m... |
| CVE-2022-20221 | MEDIUM | 6.5 | 0.2% | Jul 13, 2022 | In avrc_ctrl_pars_vendor_cmd of avrc_pars_ct.cc, there is a possible out of bounds read due to improper input validation... |
| CVE-2022-20219 | MEDIUM | 5.5 | 0.1% | Jul 13, 2022 | In multiple functions of StorageManagerService.java and UserManagerService.java, there is a possible way to leave user's... |
| CVE-2022-20217 | MEDIUM | 6.5 | 0.3% | Jul 13, 2022 | There is a unauthorized broadcast in the SprdContactsProvider. A third-party app could use this issue to delete Fdn cont... |
| CVE-2022-34358 | MEDIUM | 5.4 | 0.4% | Jul 13, 2022 | IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J... |
| CVE-2022-32074 | MEDIUM | 5.4 | 1.4% | Jul 13, 2022 | A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-F... |
| CVE-2022-32065 | MEDIUM | 5.4 | 0.7% | Jul 13, 2022 | An arbitrary file upload vulnerability in the background management module of RuoYi v4.7.3 and below allows attackers to... |
| CVE-2022-32274 | MEDIUM | 5.4 | 0.5% | Jul 13, 2022 | The Transition Scheduler add-on 6.5.0 for Atlassian Jira is prone to stored XSS via the project name to the creation fun... |
| CVE-2022-33673 | MEDIUM | 6.5 | 1.5% | Jul 12, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
| CVE-2022-33672 | MEDIUM | 6.5 | 1.5% | Jul 12, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
| CVE-2022-33671 | MEDIUM | 4.9 | 1.7% | Jul 12, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now