2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-27781 | HIGH | 7.5 | 2.4% | Jun 2, 2022 | libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's c... |
| CVE-2022-27780 | HIGH | 7.5 | 2.2% | Jun 2, 2022 | The curl URL parser wrongly accepts percent-encoded URL separators like '/'when decoding the host name part of a URL, ma... |
| CVE-2022-27778 | HIGH | 8.1 | 3.5% | Jun 2, 2022 | A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used... |
| CVE-2022-27775 | HIGH | 7.5 | 2.8% | Jun 2, 2022 | An information disclosure vulnerability exists in curl 7.65.0 to 7.82.0 are vulnerable that by using an IPv6 address tha... |
| CVE-2022-27184 | HIGH | 7.8 | 0.8% | Jun 2, 2022 | The affected product is vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary code. |
| CVE-2022-26975 | HIGH | 7.5 | 0.9% | Jun 2, 2022 | Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing log files wit... |
| CVE-2022-24701 | HIGH | 7.8 | 0.5% | Jun 2, 2022 | An issue was discovered in WinAPRS 2.9.0. A buffer overflow in national.txt processing allows a local attacker to cause ... |
| CVE-2022-24700 | HIGH | 7.5 | 1.7% | Jun 2, 2022 | An issue was discovered in WinAPRS 2.9.0. A buffer overflow in DIGI address processing for VHF KISS packets allows a rem... |
| CVE-2022-24581 | HIGH | 7.5 | 1.1% | Jun 2, 2022 | ACEweb Online Portal 3.5.065 allows unauthenticated SMB hash capture via UNC. By specifying the UNC file path of an exte... |
| CVE-2022-24241 | HIGH | 7.5 | 1.1% | Jun 2, 2022 | ACEweb Online Portal 3.5.065 was discovered to contain an External Controlled File Path and Name vulnerability via the t... |
| CVE-2022-22767 | HIGH | 8.8 | 0.4% | Jun 2, 2022 | Specific BD Pyxis™ products were installed with default credentials and may presently still operate with these credentia... |
| CVE-2022-1968 | HIGH | 7.8 | 1.4% | Jun 2, 2022 | Use After Free in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-1949 | HIGH | 7.5 | 1.4% | Jun 2, 2022 | An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect r... |
| CVE-2022-1943 | HIGH | 7.8 | 0.3% | Jun 2, 2022 | A flaw out of bounds memory write in the Linux kernel UDF file system functionality was found in the way user triggers s... |
| CVE-2022-1929 | HIGH | 7.5 | 0.6% | Jun 2, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the devcert npm package, when an attacke... |
| CVE-2022-1797 | HIGH | 8.6 | 1.9% | Jun 2, 2022 | A malformed Class 3 common industrial protocol message with a cached connection can cause a denial-of-service condition ... |
| CVE-2022-1786 | HIGH | 7.8 | 1.0% | Jun 2, 2022 | A use-after-free flaw was found in the Linux kernel’s io_uring subsystem in the way a user sets up a ring with IORING_SE... |
| CVE-2022-1661 | HIGH | 7.5 | 15.1% | Jun 2, 2022 | The affected products are vulnerable to directory traversal, which may allow an attacker to obtain arbitrary operating s... |
| CVE-2022-1652 | HIGH | 7.8 | 0.5% | Jun 2, 2022 | Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-fre... |
| CVE-2022-1419 | HIGH | 7.8 | 0.3% | Jun 2, 2022 | The root cause of this vulnerability is that the ioctl$DRM_IOCTL_MODE_DESTROY_DUMB can decrease refcount of *drm_vgem_ge... |
| CVE-2022-1215 | HIGH | 7.8 | 0.4% | Jun 2, 2022 | A format string vulnerability was found in libinput |
| CVE-2022-29169 | HIGH | 7.5 | 1.4% | Jun 1, 2022 | BigBlueButton is an open source web conferencing system. Versions starting with 2.2 and prior to 2.3.19, 2.4.7, and 2.5.... |
| CVE-2022-30190 | HIGH | 7.8 | 99.4% | Jun 1, 2022 | A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such ... |
| CVE-2022-30128 | HIGH | 8.3 | 1.8% | Jun 1, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-30127 | HIGH | 8.3 | 1.8% | Jun 1, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now