2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-24666 | HIGH | 7.5 | 1.3% | Feb 9, 2022 | A program using swift-nio-http2 is vulnerable to a denial of service attack, caused by a network peer sending a speciall... |
| CVE-2022-24321 | HIGH | 7.5 | 1.0% | Feb 9, 2022 | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause Denial of Service ... |
| CVE-2022-24318 | HIGH | 7.5 | 0.4% | Feb 9, 2022 | A CWE-326: Inadequate Encryption Strength vulnerability exists that could cause non-encrypted communication with the ser... |
| CVE-2022-24317 | HIGH | 7.5 | 1.2% | Feb 9, 2022 | A CWE-862: Missing Authorization vulnerability exists that could cause information exposure when an attacker sends a spe... |
| CVE-2022-24316 | HIGH | 7.5 | 1.3% | Feb 9, 2022 | A CWE-665: Improper Initialization vulnerability exists that could cause information exposure when an attacker sends a s... |
| CVE-2022-24315 | HIGH | 7.5 | 19.3% | Feb 9, 2022 | A CWE-125: Out-of-bounds Read vulnerability exists that could cause denial of service when an attacker repeatedly sends ... |
| CVE-2022-24314 | HIGH | 7.5 | 18.2% | Feb 9, 2022 | A CWE-125: Out-of-bounds Read vulnerability exists that could cause memory leaks potentially resulting in denial of serv... |
| CVE-2022-23048 | HIGH | 7.2 | 2.1% | Feb 9, 2022 | Exponent CMS 2.6.0patch2 allows an authenticated admin user to upload a malicious extension in the format of a ZIP file ... |
| CVE-2022-22811 | HIGH | 8.1 | 0.4% | Feb 9, 2022 | A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists that could induce users to perform unintended actions,... |
| CVE-2022-22808 | HIGH | 8.8 | 0.7% | Feb 9, 2022 | A CWE-352: Cross-Site Request Forgery (CSRF) exists that could cause a remote attacker to gain unauthorized access to th... |
| CVE-2022-22807 | HIGH | 7.4 | 0.9% | Feb 9, 2022 | A CWE-1021 Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause unintended modific... |
| CVE-2022-22543 | HIGH | 7.5 | 1.3% | Feb 9, 2022 | SAP NetWeaver Application Server for ABAP (Kernel) and ABAP Platform (Kernel) - versions KERNEL 7.22, 8.04, 7.49, 7.53, ... |
| CVE-2022-22540 | HIGH | 7.5 | 1.2% | Feb 9, 2022 | SAP NetWeaver AS ABAP (Workplace Server) - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 787, all... |
| CVE-2022-22533 | HIGH | 7.5 | 1.7% | Feb 9, 2022 | Due to improper error handling in SAP NetWeaver Application Server Java - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64... |
| CVE-2022-22528 | HIGH | 7.8 | 0.3% | Feb 9, 2022 | SAP Adaptive Server Enterprise (ASE) - version 16.0, installation makes an entry in the system PATH environment variable... |
| CVE-2022-21825 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | An Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection instal... |
| CVE-2022-21220 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | Improper restriction of XML external entity for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an a... |
| CVE-2022-21205 | HIGH | 7.5 | 1.1% | Feb 9, 2022 | Improper restriction of XML external entity reference in DSP Builder Pro for Intel(R) Quartus(R) Prime Pro Edition befor... |
| CVE-2022-21204 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | Improper permissions for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an authenticated user to po... |
| CVE-2022-21203 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | Improper permissions in the SafeNet Sentinel driver for Intel(R) Quartus(R) Prime Standard Edition before version 21.1 m... |
| CVE-2022-21174 | HIGH | 7.8 | 0.3% | Feb 9, 2022 | Improper access control in a third-party component of Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allo... |
| CVE-2022-20045 | HIGH | 7.8 | 0.1% | Feb 9, 2022 | In Bluetooth, there is a possible service crash due to a use after free. This could lead to local escalation of privileg... |
| CVE-2022-20044 | HIGH | 7.8 | 0.1% | Feb 9, 2022 | In Bluetooth, there is a possible service crash due to a use after free. This could lead to local escalation of privileg... |
| CVE-2022-20043 | HIGH | 7.8 | 0.1% | Feb 9, 2022 | In Bluetooth, there is a possible escalation of privilege due to a missing permission check. This could lead to local es... |
| CVE-2022-20041 | HIGH | 7.8 | 0.1% | Feb 9, 2022 | In Bluetooth, there is a possible escalation of privilege due to a missing permission check. This could lead to local es... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now