2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-24837MEDIUM5.3HedgeDoc is an open-source, web-based, self-hosted, collaborative markdown editor. Images uploaded with HedgeDoc version...
CVE-2022-24833MEDIUM6.1PrivateBin is minimalist, open source online pastebin clone where the server has zero knowledge of pasted data. In Priva...
CVE-2022-24832MEDIUM6.8GoCD is an open source a continuous delivery server. The bundled gocd-ldap-authentication-plugin included with the GoCD ...
CVE-2022-28544MEDIUM5.5Path traversal vulnerability in unzip method of InstallAgentCommonHelper in Galaxy store prior to version 4.5.40.5 allow...
CVE-2022-28543MEDIUM5.5Path traversal vulnerability in Samsung Flow prior to version 4.8.07.4 allows local attackers to read arbitrary files as...
CVE-2022-28542MEDIUM5.5Improper sanitization of incoming intent in Galaxy Store prior to version 4.5.40.5 allows local attackers to access priv...
CVE-2022-27845MEDIUM4.8Authenticated (admin or higher user role) Stored Cross-Site Scripting (XSS) in PlausibleHQ Plausible Analytics (WordPres...
CVE-2022-27841MEDIUM4.3Improper exception handling in Samsung Pass prior to version 3.7.07.5 allows physical attacker to view the screen that i...
CVE-2022-27840MEDIUM4.4Improper access control vulnerability in SamsungRecovery prior to version 8.1.43.0 allows local attckers to delete arbit...
CVE-2022-27839MEDIUM4Improper authentication vulnerability in SecretMode in Samsung Internet prior to version 16.2.1 allows attackers to acce...
CVE-2022-27831MEDIUM4.4Improper boundary check in sflvd_rdbuf_bits of libsflvextractor prior to SMR Apr-2022 Release 1 allows attackers to read...
CVE-2022-27822MEDIUM5.5Information exposure vulnerability in ril property setting prior to SMR April-2022 Release 1 allows access to EF_RUIMID ...
CVE-2022-27821MEDIUM5.5Improper boundary check in Quram Agif library prior to SMR Apr-2022 Release 1 allows attackers to cause denial of servic...
CVE-2022-26091MEDIUM6.8Improper access control vulnerability in Knox Manage prior to SMR Apr-2022 Release 1 allows that physical attackers can ...
CVE-2022-25832MEDIUM6.8Improper authentication vulnerability in S Secure prior to SMR Apr-2022 Release 1 allows physical attackers to use locke...
CVE-2022-25831MEDIUM4.6Improper access control vulnerability in S Secure prior to SMR Apr-2022 Release 1 allows physical attackers to access se...
CVE-2022-25615MEDIUM4.3Cross-Site Request Forgery (CSRF) in StylemixThemes eRoom – Zoom Meetings & Webinar (WordPress plugin) <= 1.3.8 allows c...
CVE-2022-25614MEDIUM4.3Cross-Site Request Forgery (CSRF) in StylemixThemes eRoom – Zoom Meetings & Webinar (WordPress plugin) <= 1.3.7 allows a...
CVE-2022-24804MEDIUM5.3Discourse is an open source platform for community discussion. In stable versions prior to 2.8.3 and beta versions prior...
CVE-2022-22571MEDIUM4.8An authenticated high privileged user can perform a stored XSS attack due to incorrect output encoding in Incapptic conn...
CVE-2022-20081MEDIUM5.9In A-GPS, there is a possible man in the middle attack due to improper certificate validation. This could lead to remote...
CVE-2022-20080MEDIUM6.4In SUB2AF, there is a possible memory corruption due to a race condition. This could lead to local escalation of privile...
CVE-2022-20079MEDIUM4.4In vow, there is a possible read of uninitialized data due to a improper input validation. This could lead to local info...
CVE-2022-20078MEDIUM6.4In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege ...
CVE-2022-20077MEDIUM6.4In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now