2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-27376 | HIGH | 7.5 | 2.1% | Apr 12, 2022 | MariaDB Server v10.6.5 and below was discovered to contain an use-after-free in the component Item_args::walk_arg, which... |
| CVE-2022-0915 | HIGH | 7 | 0.2% | Apr 12, 2022 | There is a Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability in Logitech Sync for Windows prior to 2.4.574... |
| CVE-2022-24842 | HIGH | 8.8 | 2.0% | Apr 12, 2022 | MinIO is a High Performance Object Storage released under GNU Affero General Public License v3.0. A security issue was f... |
| CVE-2022-24767 | HIGH | 7.8 | 1.4% | Apr 12, 2022 | GitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account. |
| CVE-2022-24765 | HIGH | 7.8 | 0.8% | Apr 12, 2022 | Git for Windows is a fork of Git containing Windows-specific patches. This vulnerability affects users working on multi-... |
| CVE-2022-24412 | HIGH | 7.5 | 0.9% | Apr 12, 2022 | Dell EMC PowerScale OneFS 8.2.x - 9.3.0.x contain an improper handling of value vulnerability. An unprivileged network a... |
| CVE-2022-24411 | HIGH | 7.8 | 0.2% | Apr 12, 2022 | Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability. A local attacker with ISI_PRIV_LO... |
| CVE-2022-24070 | HIGH | 7.5 | 8.8% | Apr 12, 2022 | Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_sv... |
| CVE-2022-23161 | HIGH | 7.5 | 0.9% | Apr 12, 2022 | Dell PowerScale OneFS versions 8.2.x - 9.3.0.x contain a denial-of-service vulnerability in SmartConnect. An unprivilege... |
| CVE-2022-22562 | HIGH | 7.5 | 0.9% | Apr 12, 2022 | Dell PowerScale OneFS, versions 8.2.0-9.3.0, contain a improper handling of missing values exploit. An unauthenticated n... |
| CVE-2022-22559 | HIGH | 7.5 | 0.6% | Apr 12, 2022 | Dell PowerScale OneFS, version 9.3.0, contains a use of a broken or risky cryptographic algorithm. An unprivileged netwo... |
| CVE-2022-22549 | HIGH | 8.1 | 0.6% | Apr 12, 2022 | Dell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation. A unauthenticated remote attacker could ... |
| CVE-2022-28773 | HIGH | 7.5 | 1.4% | Apr 12, 2022 | Due to an uncontrolled recursion in SAP Web Dispatcher and SAP Internet Communication Manager, the application may crash... |
| CVE-2022-28772 | HIGH | 7.5 | 1.4% | Apr 12, 2022 | By overlong input values an attacker may force overwrite of the internal program stack in SAP Web Dispatcher - versions ... |
| CVE-2022-28213 | HIGH | 8.1 | 12.1% | Apr 12, 2022 | When a user access SOAP Web services in SAP BusinessObjects Business Intelligence Platform - version 420, 430, it does n... |
| CVE-2022-27669 | HIGH | 7.5 | 0.9% | Apr 12, 2022 | An unauthenticated user can use functions of XML Data Archiving Service of SAP NetWeaver Application Server for Java - v... |
| CVE-2022-27667 | HIGH | 7.5 | 1.3% | Apr 12, 2022 | Under certain conditions, SAP BusinessObjects Business Intelligence platform, Client Management Console (CMC) - version ... |
| CVE-2022-27261 | HIGH | 7.5 | 1.3% | Apr 12, 2022 | An arbitrary file write vulnerability in Express-FileUpload v1.3.1 allows attackers to upload multiple files with the sa... |
| CVE-2022-24812 | HIGH | 8.8 | 2.2% | Apr 12, 2022 | Grafana is an open-source platform for monitoring and observability. When fine-grained access control is enabled and a c... |
| CVE-2022-24383 | HIGH | 7.8 | 0.8% | Apr 12, 2022 | The affected product is vulnerable to an out-of-bounds read, which may result in code execution |
| CVE-2022-23703 | HIGH | 7.5 | 0.7% | Apr 12, 2022 | A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays, HPE Nimble Storage All Flash Arr... |
| CVE-2022-21228 | HIGH | 7.8 | 1.1% | Apr 12, 2022 | The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary co... |
| CVE-2022-21214 | HIGH | 7.8 | 0.9% | Apr 12, 2022 | The affected product is vulnerable to a heap-based buffer overflow, which may lead to code execution. |
| CVE-2022-21155 | HIGH | 7.5 | 1.0% | Apr 12, 2022 | A specially crafted packet sent to the Fernhill SCADA Server Version 3.77 and earlier may cause an exception, causing th... |
| CVE-2022-21803 | HIGH | 7.5 | 1.7% | Apr 12, 2022 | This affects the package nconf before 0.11.4. When using the memory engine, it is possible to store a nested JSON repres... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now