2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-22756HIGH8.8If a user was convinced to drag and drop an image to their desktop or other folder, the resulting object could have been...
CVE-2022-22755HIGH8.8By using XSL Transforms, a malicious webserver could have served a user an XSL document that would continue to execute J...
CVE-2022-22754MEDIUM6.5If a user installed an extension of a particular type, the extension could have auto-updated itself and while doing so, ...
CVE-2022-22753HIGH7.1A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write a...
CVE-2022-22752HIGH8.8Mozilla developers Christian Holler and Jason Kratzer reported memory safety bugs present in Firefox 95. Some of these b...
CVE-2022-22751HIGH8.8Mozilla developers Calixte Denizet, Kershaw Chang, Christian Holler, Jason Kratzer, Gabriele Svelto, Tyson Smith, Simon ...
CVE-2022-22750MEDIUM6.5By generally accepting and passing resource handles across processes, a compromised content process might have confused ...
CVE-2022-22749MEDIUM4.3When scanning QR codes, Firefox for Android would have allowed navigation to some URLs that do not point to web content....
CVE-2022-22748MEDIUM6.5Malicious websites could have confused Firefox into showing the wrong origin when asking to launch a program and handlin...
CVE-2022-22747MEDIUM6.5After accepting an untrusted certificate, handling an empty pkcs7 sequence as part of the certificate data could have le...
CVE-2022-22746MEDIUM5.9A race condition could have allowed bypassing the fullscreen notification which could have lead to a fullscreen window s...
CVE-2022-22745MEDIUM6.5Securitypolicyviolation events could have leaked cross-origin information for frame-ancestors violations. This vulnerabi...
CVE-2022-22744HIGH8.8The constructed curl command from the "Copy as curl" feature in DevTools was not properly escaped for PowerShell. This c...
CVE-2022-22743MEDIUM4.3When navigating from inside an iframe while requesting fullscreen access, an attacker-controlled tab could have made the...
CVE-2022-22742MEDIUM6.5When inserting text while in edit mode, some characters might have lead to out-of-bounds memory access causing a potenti...
CVE-2022-22741HIGH7.5When resizing a popup while requesting fullscreen access, the popup would have become unable to leave fullscreen mode. T...
CVE-2022-22740HIGH8.8Certain network request objects were freed too early when releasing a network request handle. This could have lead to a ...
CVE-2022-22739MEDIUM6.5Malicious websites could have tricked users into accepting launching a program to handle an external URL protocol. This ...
CVE-2022-22738HIGH8.8Applying a CSS filter effect could have accessed out of bounds memory. This could have lead to a heap-buffer-overflow ca...
CVE-2022-22737HIGH7.5Constructing audio sinks could have lead to a race condition when playing audio files and closing windows. This could ha...
CVE-2022-22736HIGH7If Firefox was installed to a world-writable directory, a local privilege escalation could occur when Firefox searched t...
CVE-2022-22461HIGH7.5 IBM Security Verify Governance, Identity Manager 10.0.1 uses weaker than expected cryptographic algorithms that could a...
CVE-2022-1887CRITICAL9.8The search term could have been specified externally to trigger SQL injection. This vulnerability affects Firefox for iO...
CVE-2022-1834MEDIUM6.5When displaying the sender of an email, and the sender name contained the Braille Pattern Blank space character multiple...
CVE-2022-1802HIGH8.8If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollution, they could have...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now