2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-20076MEDIUM4.4In ged, there is a possible memory corruption due to an incorrect error handling. This could lead to local information d...
CVE-2022-20075MEDIUM6.7In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privi...
CVE-2022-20074MEDIUM6.6In preloader (partition), there is a possible out of bounds write due to a missing bounds check. This could lead to loca...
CVE-2022-20073MEDIUM6.6In preloader (usb), there is a possible out of bounds write due to a integer underflow. This could lead to local escalat...
CVE-2022-20072MEDIUM6.7In search engine service, there is a possible way to change the default search engine due to an incorrect comparison. Th...
CVE-2022-20071MEDIUM6.7In ccu, there is a possible escalation of privilege due to a missing certificate validation. This could lead to local es...
CVE-2022-20070MEDIUM6.7In ssmr, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p...
CVE-2022-20069MEDIUM6.6In preloader (usb), there is a possible out of bounds write due to an integer overflow. This could lead to local escalat...
CVE-2022-20068MEDIUM6.7In mobile_log_d, there is a possible symbolic link following due to an improper link resolution. This could lead to loca...
CVE-2022-20067MEDIUM6.7In mdp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr...
CVE-2022-20066MEDIUM4.4In atf (hwfde), there is a possible leak of sensitive information due to incorrect error handling. This could lead to lo...
CVE-2022-20065MEDIUM6.7In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc...
CVE-2022-20064MEDIUM6.7In ccci, there is a possible leak of kernel pointer due to an incorrect bounds check. This could lead to local informati...
CVE-2022-20063MEDIUM6.5In atf (spm), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...
CVE-2022-20062MEDIUM6.7In mdp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege ...
CVE-2022-20052MEDIUM6.5In mdp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege ...
CVE-2022-1193MEDIUM4.3Improper access control in GitLab CE/EE versions 10.7 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 al...
CVE-2022-1067MEDIUM6.5Navigating to a specific URL with a patient ID number will result in the server generating a PDF of a lab report without...
CVE-2022-0835MEDIUM5.5AVEVA System Platform 2020 stores sensitive information in cleartext, which may allow access to an attacker or a low-pri...
CVE-2022-0552MEDIUM5.9A flaw was found in the original fix for the netty-codec-http CVE-2021-21409, where the OpenShift Logging openshift-logg...
CVE-2022-27156MEDIUM5.4Daylight Studio Fuel CMS 1.5.1 is vulnerable to HTML Injection.
CVE-2022-27111MEDIUM5.4Jfinal_CMS 5.1.0 allows attackers to use the feedback function to send malicious XSS code to the administrator backend a...
CVE-2022-1007MEDIUM6.1The Advanced Booking Calendar WordPress plugin before 1.7.1 does not sanitise and escape the room parameter before outpu...
CVE-2022-0969MEDIUM4.8The Image optimization & Lazy Load by Optimole WordPress plugin before 3.3.2 does not sanitise and escape its "Lazyload ...
CVE-2022-0919MEDIUM5.3The Salon booking system Free and pro WordPress plugins before 7.6.3 do not have proper authorisation when searching boo...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now