2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-20119MEDIUM5.5In private_handle_t of mali_gralloc_buffer.h, there is a possible information disclosure due to uninitialized data. This...
CVE-2022-20117MEDIUM5.5In (TBD) of (TBD), there is a possible way to decrypt local data encrypted by the GSC due to improperly used crypto. Thi...
CVE-2022-1431MEDIUM5.3An issue has been discovered in GitLab affecting all versions starting from 12.10 before 14.8.6, all versions starting f...
CVE-2022-1417MEDIUM4.3Improper access control in GitLab CE/EE affecting all versions starting from 8.12 before 14.8.6, all versions starting f...
CVE-2022-0866MEDIUM5.3This is a concurrency issue that can result in the wrong caller principal being returned from the session context of an ...
CVE-2022-30278MEDIUM6.1A vulnerability in Black Duck Hub’s embedded MadCap Flare documentation files could allow an unauthenticated remote atta...
CVE-2022-20115MEDIUM5.5In broadcastServiceStateChanged of TelephonyRegistry.java, there is a possible way to learn base station information wit...
CVE-2022-20112MEDIUM5.5In getAvailabilityStatus of PrivateDnsPreferenceController.java, there is a possible way for a guest user to change priv...
CVE-2022-20011MEDIUM5.5In getArray of NotificationManagerService.java , there is a possible leak of one user notifications to another due to mi...
CVE-2022-20010MEDIUM6.5In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to an incorrect bounds check. This c...
CVE-2022-20009MEDIUM6.8In various functions of the USB gadget subsystem, there is a possible out of bounds write due to a missing bounds check....
CVE-2022-20008MEDIUM4.6In mmc_blk_read_single of block.c, there is a possible way to read kernel heap memory due to uninitialized data. This co...
CVE-2022-1567MEDIUM6.1The WP-JS plugin for WordPress contains a script called wp-js.php with the function wp_js_admin, that accepts unvalidate...
CVE-2022-1476MEDIUM6.5The All-in-One WP Migration plugin for WordPress is vulnerable to arbitrary file deletion via directory traversal due to...
CVE-2022-1209MEDIUM5.4The Ultimate Member plugin for WordPress is vulnerable to arbitrary redirects due to insufficient validation on supplied...
CVE-2022-1649MEDIUM5.5Null pointer dereference in libr/bin/format/mach0/mach0.c in radareorg/radare2 in GitHub repository radareorg/radare2 pr...
CVE-2022-24041MEDIUM6.5A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.142.5-22), Desigo PXC3 (All versions < V01.21....
CVE-2022-24040MEDIUM6.5A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.142.5-22), Desigo PXC3 (All versions < V01.21....
CVE-2022-29868MEDIUM5.51Password for Mac 7.2.4 through 7.9.x before 7.9.3 is vulnerable to a process validation bypass. Malicious software runn...
CVE-2022-27308MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in PHProjekt PhpSimplyGest v1.3.0 allows attackers to execute arbitrar...
CVE-2022-28161MEDIUM5.5An information exposure through log file vulnerability in Brocade SANNav versions before Brocade SANnav 2.2.0 could allo...
CVE-2022-27114MEDIUM5.5There is a vulnerability in htmldoc 1.9.16. In image_load_jpeg function image.cxx when it calls malloc,'img->width' and ...
CVE-2022-22481MEDIUM5.3IBM Navigator for i 7.2, 7.3, and 7.4 (heritage version) could allow a remote attacker to obtain access to the web inter...
CVE-2022-22319MEDIUM5.4IBM Robotic Process Automation 21.0.1 could allow a register user on the system to physically delete a queue that could ...
CVE-2022-1338MEDIUM4.8The Easily Generate Rest API Url WordPress plugin through 1.0.0 does not escape some of its settings, allowing high priv...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now