2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-3114MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. imx_register_uart_clocks in drivers/clk/imx/clk.c lacks ch...
CVE-2022-3113MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. mtk_vcodec_fw_vpu_init in drivers/media/platform/mtk-vcode...
CVE-2022-3112MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. amvdec_set_canvases in drivers/staging/media/meson/vdec/vd...
CVE-2022-3111MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. free_charger_irq() in drivers/power/supply/wm8350_power.c ...
CVE-2022-3110MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. _rtw_init_xmit_priv in drivers/staging/r8188eu/core/rtw_xm...
CVE-2022-3108MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. kfd_parse_subtype_iolink in drivers/gpu/drm/amd/amdkfd/kfd...
CVE-2022-3107MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. netvsc_get_ethtool_stats in drivers/net/hyperv/netvsc_drv....
CVE-2022-3106MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. ef100_update_stats in drivers/net/ethernet/sfc/ef100_nic.c...
CVE-2022-3105MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. uapi_finalize in drivers/infiniband/core/uverbs_uapi.c lac...
CVE-2022-3104MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. lkdtm_ARRAY_BOUNDS in drivers/misc/lkdtm/bugs.c lacks chec...
CVE-2022-38488CRITICAL9.8logrocket-oauth2-example through 2020-05-27 allows SQL injection via the /auth/register username parameter.
CVE-2022-2601HIGH8.6A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when ca...
CVE-2022-31705HIGH8.2VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0 controller (EHCI). ...
CVE-2022-31703HIGH7.5The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject fi...
CVE-2022-31702CRITICAL9.8vRealize Network Insight (vRNI) contains a command injection vulnerability present in the vRNI REST API. A malicious act...
CVE-2022-31701MEDIUM5.3VMware Workspace ONE Access and Identity Manager contain a broken authentication vulnerability. VMware has evaluated the...
CVE-2022-31700HIGH7.2VMware Workspace ONE Access and Identity Manager contain an authenticated remote code execution vulnerability. VMware ha...
CVE-2022-23741HIGH7.2An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed a scoped user-to-server...
CVE-2022-46443HIGH8.8mesinkasir Bangresto 1.0 is vulnberable to SQL Injection via the itemqty%5B%5D parameter.
CVE-2022-46256HIGH8.8A path traversal vulnerability was identified in GitHub Enterprise Server that allowed remote code execution when buildi...
CVE-2022-46255CRITICAL9.8An improper limitation of a pathname to a restricted directory vulnerability was identified in GitHub Enterprise Server ...
CVE-2022-46072CRITICAL9.8Helmet Store Showroom v1.0 vulnerable to unauthenticated SQL Injection.
CVE-2022-46071CRITICAL9.8There is SQL Injection vulnerability at Helmet Store Showroom v1.0 Login Page. This vulnerability can be exploited to by...
CVE-2022-44910HIGH7.8Binbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at /binbloom-master/src/help...
CVE-2022-23527MEDIUM6.1mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server. Version...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now