2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-3114 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. imx_register_uart_clocks in drivers/clk/imx/clk.c lacks ch... |
| CVE-2022-3113 | MEDIUM | 5.5 | 0.7% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. mtk_vcodec_fw_vpu_init in drivers/media/platform/mtk-vcode... |
| CVE-2022-3112 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. amvdec_set_canvases in drivers/staging/media/meson/vdec/vd... |
| CVE-2022-3111 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. free_charger_irq() in drivers/power/supply/wm8350_power.c ... |
| CVE-2022-3110 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. _rtw_init_xmit_priv in drivers/staging/r8188eu/core/rtw_xm... |
| CVE-2022-3108 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. kfd_parse_subtype_iolink in drivers/gpu/drm/amd/amdkfd/kfd... |
| CVE-2022-3107 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. netvsc_get_ethtool_stats in drivers/net/hyperv/netvsc_drv.... |
| CVE-2022-3106 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. ef100_update_stats in drivers/net/ethernet/sfc/ef100_nic.c... |
| CVE-2022-3105 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. uapi_finalize in drivers/infiniband/core/uverbs_uapi.c lac... |
| CVE-2022-3104 | MEDIUM | 5.5 | 0.2% | Dec 14, 2022 | An issue was discovered in the Linux kernel through 5.16-rc6. lkdtm_ARRAY_BOUNDS in drivers/misc/lkdtm/bugs.c lacks chec... |
| CVE-2022-38488 | CRITICAL | 9.8 | 14.1% | Dec 14, 2022 | logrocket-oauth2-example through 2020-05-27 allows SQL injection via the /auth/register username parameter. |
| CVE-2022-2601 | HIGH | 8.6 | 0.5% | Dec 14, 2022 | A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when ca... |
| CVE-2022-31705 | HIGH | 8.2 | 1.5% | Dec 14, 2022 | VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0 controller (EHCI). ... |
| CVE-2022-31703 | HIGH | 7.5 | 1.8% | Dec 14, 2022 | The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject fi... |
| CVE-2022-31702 | CRITICAL | 9.8 | 1.6% | Dec 14, 2022 | vRealize Network Insight (vRNI) contains a command injection vulnerability present in the vRNI REST API. A malicious act... |
| CVE-2022-31701 | MEDIUM | 5.3 | 0.5% | Dec 14, 2022 | VMware Workspace ONE Access and Identity Manager contain a broken authentication vulnerability. VMware has evaluated the... |
| CVE-2022-31700 | HIGH | 7.2 | 1.1% | Dec 14, 2022 | VMware Workspace ONE Access and Identity Manager contain an authenticated remote code execution vulnerability. VMware ha... |
| CVE-2022-23741 | HIGH | 7.2 | 1.1% | Dec 14, 2022 | An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed a scoped user-to-server... |
| CVE-2022-46443 | HIGH | 8.8 | 37.7% | Dec 14, 2022 | mesinkasir Bangresto 1.0 is vulnberable to SQL Injection via the itemqty%5B%5D parameter. |
| CVE-2022-46256 | HIGH | 8.8 | 1.9% | Dec 14, 2022 | A path traversal vulnerability was identified in GitHub Enterprise Server that allowed remote code execution when buildi... |
| CVE-2022-46255 | CRITICAL | 9.8 | 1.4% | Dec 14, 2022 | An improper limitation of a pathname to a restricted directory vulnerability was identified in GitHub Enterprise Server ... |
| CVE-2022-46072 | CRITICAL | 9.8 | 1.1% | Dec 14, 2022 | Helmet Store Showroom v1.0 vulnerable to unauthenticated SQL Injection. |
| CVE-2022-46071 | CRITICAL | 9.8 | 4.3% | Dec 14, 2022 | There is SQL Injection vulnerability at Helmet Store Showroom v1.0 Login Page. This vulnerability can be exploited to by... |
| CVE-2022-44910 | HIGH | 7.8 | 0.4% | Dec 14, 2022 | Binbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at /binbloom-master/src/help... |
| CVE-2022-23527 | MEDIUM | 6.1 | 0.9% | Dec 14, 2022 | mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server. Version... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now