2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48570 | HIGH | 7.5 | 0.8% | Aug 22, 2023 | Crypto++ through 8.4 contains a timing side channel in ECDSA signature generation. Function FixedSizeAllocatorWithCleanu... |
| CVE-2022-48560 | HIGH | 7.5 | 1.8% | Aug 22, 2023 | A use-after-free exists in Python through 3.9 via heappushpop in heapq. |
| CVE-2022-48541 | HIGH | 7.1 | 1.2% | Aug 22, 2023 | A memory leak in ImageMagick 7.0.10-45 and 6.9.11-22 allows remote attackers to perform a denial of service via the "ide... |
| CVE-2022-47696 | HIGH | 7.8 | 0.4% | Aug 22, 2023 | An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecifie... |
| CVE-2022-47695 | HIGH | 7.8 | 0.5% | Aug 22, 2023 | An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecifie... |
| CVE-2022-47673 | HIGH | 7.8 | 0.4% | Aug 22, 2023 | An issue was discovered in Binutils addr2line before 2.39.3, function parse_module contains multiple out of bound reads ... |
| CVE-2022-47069 | HIGH | 7.8 | 0.3% | Aug 22, 2023 | p7zip 16.02 was discovered to contain a heap-buffer-overflow vulnerability via the function NArchive::NZip::CInArchive::... |
| CVE-2022-45703 | HIGH | 7.8 | 0.5% | Aug 22, 2023 | Heap buffer overflow vulnerability in binutils readelf before 2.40 via function display_debug_section in file readelf.c. |
| CVE-2022-44840 | HIGH | 7.8 | 0.5% | Aug 22, 2023 | Heap buffer overflow vulnerability in binutils readelf before 2.40 via function find_section_in_set in file readelf.c. |
| CVE-2022-44729 | HIGH | 7.1 | 0.8% | Aug 22, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affe... |
| CVE-2022-43358 | HIGH | 7.5 | 1.3% | Aug 22, 2023 | Stack overflow vulnerability in ast_selectors.cpp: in function Sass::ComplexSelector::has_placeholder in libsass:3.6.5-8... |
| CVE-2022-43357 | HIGH | 7.5 | 1.3% | Aug 22, 2023 | Stack overflow vulnerability in ast_selectors.cpp in function Sass::CompoundSelector::has_real_parent_ref in libsass:3.6... |
| CVE-2022-34038 | HIGH | 7.5 | 1.3% | Aug 22, 2023 | Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go. NOTE: t... |
| CVE-2022-28073 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | A use after free in r_reg_set_value function in radare2 5.4.2 and 5.4.0. |
| CVE-2022-28072 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | A heap buffer overflow in r_read_le32 function in radare25.4.2 and 5.4.0. |
| CVE-2022-28071 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | A use after free in r_reg_get_name_idx function in radare2 5.4.2 and 5.4.0. |
| CVE-2022-28070 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | A null pointer deference in __core_anal_fcn function in radare2 5.4.2 and 5.4.0. |
| CVE-2022-28069 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | A heap buffer overflow in vax_opfunction in radare2 5.4.2 and 5.4.0. |
| CVE-2022-28068 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | A heap buffer overflow in r_sleb128 function in radare2 5.4.2 and 5.4.0. |
| CVE-2022-26592 | HIGH | 8.8 | 0.8% | Aug 22, 2023 | Stack Overflow vulnerability in libsass 3.6.5 via the CompoundSelector::has_real_parent_ref function. |
| CVE-2022-25024 | HIGH | 7.5 | 1.0% | Aug 22, 2023 | The json2xml package through 3.12.0 for Python allows an error in typecode decoding enabling a remote attack that can le... |
| CVE-2022-46751 | HIGH | 8.2 | 1.8% | Aug 21, 2023 | Improper Restriction of XML External Entity Reference, XML Injection (aka Blind XPath Injection) vulnerability in Apache... |
| CVE-2022-4894 | HIGH | 7.3 | 0.2% | Aug 16, 2023 | Certain HP and Samsung Printer software packages may potentially be vulnerable to elevation of privilege due to Uncontro... |
| CVE-2022-48503 | HIGH | 8.8 | 3.1% | Aug 14, 2023 | The issue was addressed with improved bounds checks. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS ... |
| CVE-2022-46706 | HIGH | 7.8 | 0.2% | Aug 14, 2023 | A type confusion issue was addressed with improved state handling. This issue is fixed in Security Update 2022-003 Catal... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now