2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-46280 | HIGH | 7.8 | 0.8% | Jul 21, 2023 | A use of uninitialized pointer vulnerability exists in the PQS format pFormat functionality of Open Babel 3.1.1 and mast... |
| CVE-2022-44451 | HIGH | 7.8 | 0.8% | Jul 21, 2023 | A use of uninitialized pointer vulnerability exists in the MSI format atom functionality of Open Babel 3.1.1 and master ... |
| CVE-2022-43607 | HIGH | 7.8 | 0.8% | Jul 21, 2023 | An out-of-bounds write vulnerability exists in the MOL2 format attribute and value functionality of Open Babel 3.1.1 and... |
| CVE-2022-43467 | HIGH | 7.8 | 0.8% | Jul 21, 2023 | An out-of-bounds write vulnerability exists in the PQS format coord_file functionality of Open Babel 3.1.1 and master co... |
| CVE-2022-42885 | HIGH | 7.8 | 0.8% | Jul 21, 2023 | A use of uninitialized pointer vulnerability exists in the GRO format res functionality of Open Babel 3.1.1 and master c... |
| CVE-2022-41793 | HIGH | 7.8 | 0.8% | Jul 21, 2023 | An out-of-bounds write vulnerability exists in the CSR format title functionality of Open Babel 3.1.1 and master commit ... |
| CVE-2022-37331 | HIGH | 7.8 | 0.7% | Jul 21, 2023 | An out-of-bounds write vulnerability exists in the Gaussian format orientation functionality of Open Babel 3.1.1 and mas... |
| CVE-2022-28737 | HIGH | 7.8 | 0.3% | Jul 20, 2023 | There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables; The handle_im... |
| CVE-2022-28736 | HIGH | 7.8 | 0.3% | Jul 20, 2023 | There's a use-after-free vulnerability in grub_cmd_chainloader() function; The chainloader command is used to boot up op... |
| CVE-2022-28735 | HIGH | 7.8 | 0.3% | Jul 20, 2023 | The GRUB2's shim_lock verifier allows non-kernel files to be loaded on shim-powered secure boot systems. Allowing such f... |
| CVE-2022-28734 | HIGH | 7 | 1.1% | Jul 20, 2023 | Out-of-bounds write when handling split HTTP headers; When handling split HTTP headers, GRUB2 HTTP code accidentally mov... |
| CVE-2022-28733 | HIGH | 8.1 | 1.3% | Jul 20, 2023 | Integer underflow in grub_net_recv_ip4_packets; A malicious crafted IP packet can lead to an integer underflow in grub_n... |
| CVE-2022-43910 | HIGH | 7.8 | 0.2% | Jul 19, 2023 | IBM Security Guardium 11.3 could allow a local user to escalate their privileges due to improper permission controls. ... |
| CVE-2022-47085 | HIGH | 7.5 | 0.7% | Jul 18, 2023 | An issue was discovered in ostree before 2022.7 allows attackers to cause a denial of service or other unspecified impac... |
| CVE-2022-41409 | HIGH | 7.5 | 1.0% | Jul 18, 2023 | Integer overflow vulnerability in pcre2test before 10.41 allows attackers to cause a denial of service or other unspecif... |
| CVE-2022-34155 | HIGH | 8.8 | 1.0% | Jul 18, 2023 | Improper Authentication vulnerability in miniOrange OAuth Single Sign On – SSO (OAuth Client) plugin allows Authenticati... |
| CVE-2022-33065 | HIGH | 7.8 | 0.4% | Jul 18, 2023 | Multiple signed integers overflow in function au_read_header in src/au.c and in functions mat4_open and mat4_read_header... |
| CVE-2022-33064 | HIGH | 7.8 | 0.3% | Jul 18, 2023 | An off-by-one error in function wav_read_header in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which... |
| CVE-2022-26563 | HIGH | 8.8 | 0.7% | Jul 18, 2023 | An issue was discovered in Tildeslash Monit before 5.31.0, allows remote attackers to gain escilated privlidges due to i... |
| CVE-2022-47169 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in StaxWP Visibility Logic for Elementor plugin <= 2.3.4 versions. |
| CVE-2022-46857 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in SiteAlert plugin <= 1.9.7 versions. |
| CVE-2022-45828 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in NooTheme Noo Timetable plugin <= 2.1.3 versions. |
| CVE-2022-38062 | HIGH | 8.8 | 0.3% | Jul 17, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Metagauss Download Theme plugin <= 1.0.9 versions. |
| CVE-2022-36424 | HIGH | 8.8 | 0.3% | Jul 17, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Nikola Loncar Easy Appointments plugin <= 3.11.9 versions. |
| CVE-2022-47172 | HIGH | 8.8 | 0.2% | Jul 17, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in HasThemes ShopLentor plugin <= 2.6.2 versions. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now