2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29453 | MEDIUM | 4.3 | 0.4% | Jun 15, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in API KEY for Google Maps plugin <= 1.2.1 at WordPress leading to Googl... |
| CVE-2022-29442 | MEDIUM | 5.4 | 0.5% | Jun 15, 2022 | Authenticated (subscriber or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Messages For WordPress... |
| CVE-2022-29441 | MEDIUM | 4.3 | 0.4% | Jun 15, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Private Messages For WordPress plugin <= 2.1.10 at WordPress allows a... |
| CVE-2022-29440 | MEDIUM | 5.4 | 0.5% | Jun 15, 2022 | Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in Promotion ... |
| CVE-2022-29439 | MEDIUM | 4.3 | 0.4% | Jun 15, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Image Slider by NextCode plugin <= 1.1.2 at WordPress allows deleting... |
| CVE-2022-29438 | MEDIUM | 4.8 | 0.5% | Jun 15, 2022 | Authenticated (author or higher user role) Persistent Cross-Site Scripting (XSS) vulnerability in Image Slider by NextCo... |
| CVE-2022-22444 | MEDIUM | 5.5 | 0.2% | Jun 15, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a local user to exploit a vulnerability in the lpd daemon to cause a den... |
| CVE-2022-29406 | MEDIUM | 5.4 | 0.6% | Jun 15, 2022 | Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in DynamicWeb... |
| CVE-2022-27859 | MEDIUM | 5.4 | 0.6% | Jun 15, 2022 | Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in Nicdark d.... |
| CVE-2022-20233 | MEDIUM | 6.7 | 0.1% | Jun 15, 2022 | In param_find_digests_internal and related functions of the Titan-M source, there is a possible out of bounds write due ... |
| CVE-2022-20208 | MEDIUM | 4.4 | 0.1% | Jun 15, 2022 | In parseRecursively of cppbor_parse.cpp, there is a possible out of bounds read due to an incorrect bounds check. This c... |
| CVE-2022-20206 | MEDIUM | 5.5 | 0.1% | Jun 15, 2022 | In setPackageOrComponentEnabled of NotificationManagerService.java, there is a missing permission check. This could lead... |
| CVE-2022-20205 | MEDIUM | 5.5 | 0.1% | Jun 15, 2022 | In isFileUri of FileUtil.java, there is a possible way to bypass the check for a file:// scheme due to improper input va... |
| CVE-2022-20202 | MEDIUM | 6.5 | 0.6% | Jun 15, 2022 | In ih264_resi_trans_quant_4x4_sse42 of ih264_resi_trans_quant_sse42.c, there is a possible out of bounds read due to a h... |
| CVE-2022-20201 | MEDIUM | 6.7 | 0.1% | Jun 15, 2022 | In getAppSize of InstalldNativeService.cpp, there is a possible out of bounds read due to a missing bounds check. This c... |
| CVE-2022-20200 | MEDIUM | 5.5 | 0.1% | Jun 15, 2022 | In updateApState of SoftApManager.java, there is a possible leak of hotspot state due to a missing permission check. Thi... |
| CVE-2022-20198 | MEDIUM | 4.4 | 0.1% | Jun 15, 2022 | In llcp_dlc_proc_connect_pdu of llcp_dlc.cc, there is a possible out of bounds read due to a missing bounds check. This ... |
| CVE-2022-20196 | MEDIUM | 5 | 0.1% | Jun 15, 2022 | In gallery3d and photos, there is a possible permission bypass due to a confused deputy. This could lead to local inform... |
| CVE-2022-20195 | MEDIUM | 5 | 0.2% | Jun 15, 2022 | In the keystore library, there is a possible prevention of access to system Settings due to unsafe deserialization. This... |
| CVE-2022-20185 | MEDIUM | 6.7 | 0.1% | Jun 15, 2022 | In TBD of TBD, there is a possible use after free bug. This could lead to local escalation of privilege with System exec... |
| CVE-2022-20183 | MEDIUM | 6.7 | 0.1% | Jun 15, 2022 | In hypx_create_blob_dmabuf of faceauth_hypx.c, there is a possible out of bounds write due to a missing bounds check. Th... |
| CVE-2022-20182 | MEDIUM | 4.4 | 0.1% | Jun 15, 2022 | In handle_ramdump of pixel_loader.c, there is a possible way to create a ramdump of non-secure memory due to a missing p... |
| CVE-2022-20178 | MEDIUM | 6.7 | 0.1% | Jun 15, 2022 | In ioctl_dpm_qos_update and ioctl_event_control_set of (TBD), there is a possible out of bounds write due to an integer ... |
| CVE-2022-20176 | MEDIUM | 4.4 | 0.1% | Jun 15, 2022 | In auth_store of sjtag-driver.c, there is a possible read of uninitialized memory due to a missing bounds check. This co... |
| CVE-2022-20174 | MEDIUM | 4.4 | 0.1% | Jun 15, 2022 | In exynos_secEnv_init of mach-gs101.c, there is a possible out of bounds read due to an incorrect bounds check. This cou... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now