2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25783 | MEDIUM | 4.3 | 0.6% | May 4, 2022 | Insufficient Logging vulnerability in web server of Secomea GateManager allows logged in user to issue improper queries ... |
| CVE-2022-25782 | MEDIUM | 5.4 | 0.5% | May 4, 2022 | Improper Handling of Insufficient Privileges vulnerability in Web UI of Secomea GateManager allows logged in user to acc... |
| CVE-2022-25781 | MEDIUM | 6.1 | 0.5% | May 4, 2022 | Cross-site Scripting (XSS) vulnerability in Web UI of Secomea GateManager allows phishing attacker to inject javascript ... |
| CVE-2022-25780 | MEDIUM | 4.3 | 0.6% | May 4, 2022 | Information Exposure vulnerability in web UI of Secomea GateManager allows logged in user to query devices outside own s... |
| CVE-2022-25779 | MEDIUM | 4.3 | 0.5% | May 4, 2022 | Logging of Excessive Data vulnerability in audit log of Secomea GateManager allows logged in user to write text entries ... |
| CVE-2022-1571 | MEDIUM | 6.1 | 0.8% | May 4, 2022 | Cross-site scripting - Reflected in Create Subaccount in GitHub repository neorazorx/facturascripts prior to 2022.07. Th... |
| CVE-2022-1555 | MEDIUM | 6.1 | 1.2% | May 4, 2022 | DOM XSS in microweber ver 1.2.15 in GitHub repository microweber/microweber prior to 1.2.16. inject arbitrary js code, d... |
| CVE-2022-1502 | MEDIUM | 4.3 | 0.5% | May 4, 2022 | Permissions were not properly verified in the API on projects using version control in Git. This allowed projects to be ... |
| CVE-2022-20108 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | In voice service, there is a possible out of bounds write due to a stack-based buffer overflow. This could lead to local... |
| CVE-2022-20107 | MEDIUM | 4.4 | 0.1% | May 3, 2022 | In subtitle service, there is a possible application crash due to an integer overflow. This could lead to local denial o... |
| CVE-2022-20106 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | In MM service, there is a possible out of bounds write due to a heap-based buffer overflow. This could lead to local esc... |
| CVE-2022-20105 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | In MM service, there is a possible out of bounds write due to a stack-based buffer overflow. This could lead to local es... |
| CVE-2022-20104 | MEDIUM | 5.5 | 0.1% | May 3, 2022 | In aee daemon, there is a possible information disclosure due to improper access control. This could lead to local infor... |
| CVE-2022-20103 | MEDIUM | 4.4 | 0.1% | May 3, 2022 | In aee daemon, there is a possible information disclosure due to symbolic link following. This could lead to local infor... |
| CVE-2022-20102 | MEDIUM | 4.4 | 0.1% | May 3, 2022 | In aee daemon, there is a possible information disclosure due to a missing permission check. This could lead to local in... |
| CVE-2022-20101 | MEDIUM | 5.5 | 0.1% | May 3, 2022 | In aee daemon, there is a possible information disclosure due to a path traversal. This could lead to local information ... |
| CVE-2022-28793 | MEDIUM | 4.4 | 0.2% | May 3, 2022 | Given the TEE is compromised and controlled by the attacker, improper state maintenance in StrongBox allows attackers to... |
| CVE-2022-28791 | MEDIUM | 5.5 | 0.2% | May 3, 2022 | Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to ove... |
| CVE-2022-28789 | MEDIUM | 5.5 | 0.2% | May 3, 2022 | Unprotected activities in Voice Note prior to version 21.3.51.11 allows attackers to record voice without user interacti... |
| CVE-2022-28788 | MEDIUM | 5.5 | 0.1% | May 3, 2022 | Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi... |
| CVE-2022-28787 | MEDIUM | 5.5 | 0.1% | May 3, 2022 | Improper buffer size check logic in wmfextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi... |
| CVE-2022-28786 | MEDIUM | 5.5 | 0.1% | May 3, 2022 | Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi... |
| CVE-2022-28785 | MEDIUM | 5.5 | 0.1% | May 3, 2022 | Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi... |
| CVE-2022-28782 | MEDIUM | 4.6 | 0.1% | May 3, 2022 | Improper access control vulnerability in Contents To Window prior to SMR May-2022 Release 1 allows physical attacker to ... |
| CVE-2022-28781 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | Improper input validation in Settings prior to SMR-May-2022 Release 1 allows attackers to launch arbitrary activity with... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now