2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-48570HIGH7.5Crypto++ through 8.4 contains a timing side channel in ECDSA signature generation. Function FixedSizeAllocatorWithCleanu...
CVE-2022-48560HIGH7.5A use-after-free exists in Python through 3.9 via heappushpop in heapq.
CVE-2022-48541HIGH7.1A memory leak in ImageMagick 7.0.10-45 and 6.9.11-22 allows remote attackers to perform a denial of service via the "ide...
CVE-2022-47696HIGH7.8An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecifie...
CVE-2022-47695HIGH7.8An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecifie...
CVE-2022-47673HIGH7.8An issue was discovered in Binutils addr2line before 2.39.3, function parse_module contains multiple out of bound reads ...
CVE-2022-47069HIGH7.8p7zip 16.02 was discovered to contain a heap-buffer-overflow vulnerability via the function NArchive::NZip::CInArchive::...
CVE-2022-45703HIGH7.8Heap buffer overflow vulnerability in binutils readelf before 2.40 via function display_debug_section in file readelf.c.
CVE-2022-44840HIGH7.8Heap buffer overflow vulnerability in binutils readelf before 2.40 via function find_section_in_set in file readelf.c.
CVE-2022-44729HIGH7.1Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affe...
CVE-2022-43358HIGH7.5Stack overflow vulnerability in ast_selectors.cpp: in function Sass::ComplexSelector::has_placeholder in libsass:3.6.5-8...
CVE-2022-43357HIGH7.5Stack overflow vulnerability in ast_selectors.cpp in function Sass::CompoundSelector::has_real_parent_ref in libsass:3.6...
CVE-2022-34038HIGH7.5Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go. NOTE: t...
CVE-2022-28073HIGH7.5A use after free in r_reg_set_value function in radare2 5.4.2 and 5.4.0.
CVE-2022-28072HIGH7.5A heap buffer overflow in r_read_le32 function in radare25.4.2 and 5.4.0.
CVE-2022-28071HIGH7.5A use after free in r_reg_get_name_idx function in radare2 5.4.2 and 5.4.0.
CVE-2022-28070HIGH7.5A null pointer deference in __core_anal_fcn function in radare2 5.4.2 and 5.4.0.
CVE-2022-28069HIGH7.5A heap buffer overflow in vax_opfunction in radare2 5.4.2 and 5.4.0.
CVE-2022-28068HIGH7.5A heap buffer overflow in r_sleb128 function in radare2 5.4.2 and 5.4.0.
CVE-2022-26592HIGH8.8Stack Overflow vulnerability in libsass 3.6.5 via the CompoundSelector::has_real_parent_ref function.
CVE-2022-25024HIGH7.5The json2xml package through 3.12.0 for Python allows an error in typecode decoding enabling a remote attack that can le...
CVE-2022-46751HIGH8.2Improper Restriction of XML External Entity Reference, XML Injection (aka Blind XPath Injection) vulnerability in Apache...
CVE-2022-4894HIGH7.3Certain HP and Samsung Printer software packages may potentially be vulnerable to elevation of privilege due to Uncontro...
CVE-2022-48503HIGH8.8The issue was addressed with improved bounds checks. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS ...
CVE-2022-46706HIGH7.8A type confusion issue was addressed with improved state handling. This issue is fixed in Security Update 2022-003 Catal...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now