2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-29453MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in API KEY for Google Maps plugin <= 1.2.1 at WordPress leading to Googl...
CVE-2022-29442MEDIUM5.4Authenticated (subscriber or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Messages For WordPress...
CVE-2022-29441MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Private Messages For WordPress plugin <= 2.1.10 at WordPress allows a...
CVE-2022-29440MEDIUM5.4Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in Promotion ...
CVE-2022-29439MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Image Slider by NextCode plugin <= 1.1.2 at WordPress allows deleting...
CVE-2022-29438MEDIUM4.8Authenticated (author or higher user role) Persistent Cross-Site Scripting (XSS) vulnerability in Image Slider by NextCo...
CVE-2022-22444MEDIUM5.5IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a local user to exploit a vulnerability in the lpd daemon to cause a den...
CVE-2022-29406MEDIUM5.4Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in DynamicWeb...
CVE-2022-27859MEDIUM5.4Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in Nicdark d....
CVE-2022-20233MEDIUM6.7In param_find_digests_internal and related functions of the Titan-M source, there is a possible out of bounds write due ...
CVE-2022-20208MEDIUM4.4In parseRecursively of cppbor_parse.cpp, there is a possible out of bounds read due to an incorrect bounds check. This c...
CVE-2022-20206MEDIUM5.5In setPackageOrComponentEnabled of NotificationManagerService.java, there is a missing permission check. This could lead...
CVE-2022-20205MEDIUM5.5In isFileUri of FileUtil.java, there is a possible way to bypass the check for a file:// scheme due to improper input va...
CVE-2022-20202MEDIUM6.5In ih264_resi_trans_quant_4x4_sse42 of ih264_resi_trans_quant_sse42.c, there is a possible out of bounds read due to a h...
CVE-2022-20201MEDIUM6.7In getAppSize of InstalldNativeService.cpp, there is a possible out of bounds read due to a missing bounds check. This c...
CVE-2022-20200MEDIUM5.5In updateApState of SoftApManager.java, there is a possible leak of hotspot state due to a missing permission check. Thi...
CVE-2022-20198MEDIUM4.4In llcp_dlc_proc_connect_pdu of llcp_dlc.cc, there is a possible out of bounds read due to a missing bounds check. This ...
CVE-2022-20196MEDIUM5In gallery3d and photos, there is a possible permission bypass due to a confused deputy. This could lead to local inform...
CVE-2022-20195MEDIUM5In the keystore library, there is a possible prevention of access to system Settings due to unsafe deserialization. This...
CVE-2022-20185MEDIUM6.7In TBD of TBD, there is a possible use after free bug. This could lead to local escalation of privilege with System exec...
CVE-2022-20183MEDIUM6.7In hypx_create_blob_dmabuf of faceauth_hypx.c, there is a possible out of bounds write due to a missing bounds check. Th...
CVE-2022-20182MEDIUM4.4In handle_ramdump of pixel_loader.c, there is a possible way to create a ramdump of non-secure memory due to a missing p...
CVE-2022-20178MEDIUM6.7In ioctl_dpm_qos_update and ioctl_event_control_set of (TBD), there is a possible out of bounds write due to an integer ...
CVE-2022-20176MEDIUM4.4In auth_store of sjtag-driver.c, there is a possible read of uninitialized memory due to a missing bounds check. This co...
CVE-2022-20174MEDIUM4.4In exynos_secEnv_init of mach-gs101.c, there is a possible out of bounds read due to an incorrect bounds check. This cou...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now