2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-21842 | HIGH | 7.8 | 2.3% | Jan 11, 2022 | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2022-21841 | HIGH | 7.8 | 2.6% | Jan 11, 2022 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2022-21840 | HIGH | 8.8 | 3.1% | Jan 11, 2022 | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2022-21838 | HIGH | 7.8 | 1.5% | Jan 11, 2022 | Windows Cleanup Manager Elevation of Privilege Vulnerability |
| CVE-2022-21837 | HIGH | 8.8 | 3.0% | Jan 11, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2022-21836 | HIGH | 7.8 | 0.7% | Jan 11, 2022 | Windows Certificate Spoofing Vulnerability |
| CVE-2022-21835 | HIGH | 7.8 | 0.7% | Jan 11, 2022 | Microsoft Cryptographic Services Elevation of Privilege Vulnerability |
| CVE-2022-21834 | HIGH | 7.8 | 0.6% | Jan 11, 2022 | Windows User-mode Driver Framework Reflector Driver Elevation of Privilege Vulnerability |
| CVE-2022-21833 | HIGH | 7.8 | 0.6% | Jan 11, 2022 | Virtual Machine IDE Drive Elevation of Privilege Vulnerability |
| CVE-2022-21669 | HIGH | 7.5 | 1.0% | Jan 11, 2022 | PuddingBot is a group management bot. In version 0.0.6-b933652 and prior, the bot token is publicly exposed in main.py, ... |
| CVE-2022-0144 | HIGH | 7.1 | 0.4% | Jan 11, 2022 | shelljs is vulnerable to Improper Privilege Management |
| CVE-2022-21668 | HIGH | 8.6 | 3.9% | Jan 10, 2022 | pipenv is a Python development workflow tool. Starting with version 2018.10.9 and prior to version 2022.1.8, a flaw in p... |
| CVE-2022-21666 | HIGH | 7.2 | 1.2% | Jan 10, 2022 | Useful Simple Open-Source CMS (USOC) is a content management system (CMS) for programmers. Versions prior to Pb2.4Bfx3 a... |
| CVE-2022-22121 | HIGH | 8 | 1.2% | Jan 10, 2022 | In NocoDB, versions 0.81.0 through 0.83.8 are affected by CSV Injection vulnerability (Formula Injection). A low privile... |
| CVE-2022-22827 | HIGH | 8.8 | 2.8% | Jan 10, 2022 | storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. |
| CVE-2022-22826 | HIGH | 8.8 | 2.8% | Jan 10, 2022 | nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. |
| CVE-2022-22825 | HIGH | 8.8 | 2.6% | Jan 10, 2022 | lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. |
| CVE-2022-22288 | HIGH | 7.5 | 0.9% | Jan 10, 2022 | Improper authorization vulnerability in Galaxy Store prior to 4.5.36.5 allows remote app installation of the allowlist. |
| CVE-2022-22286 | HIGH | 7.1 | 0.3% | Jan 10, 2022 | A vulnerability using PendingIntent in Bixby Routines prior to version 3.1.21.8 in Android R(11.0) and 2.6.30.5 in Andro... |
| CVE-2022-22285 | HIGH | 7.1 | 0.3% | Jan 10, 2022 | A vulnerability using PendingIntent in Reminder prior to version 12.2.05.0 in Android R(11.0) and 12.3.02.1000 in Androi... |
| CVE-2022-22265 | HIGH | 7.8 | 0.4% | Jan 10, 2022 | An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary m... |
| CVE-2022-22264 | HIGH | 7.1 | 0.1% | Jan 10, 2022 | Improper sanitization of incoming intent in Dressroom prior to SMR Jan-2022 Release 1 allows local attackers to read and... |
| CVE-2022-21667 | HIGH | 7.5 | 1.6% | Jan 10, 2022 | soketi is an open-source WebSockets server. There is an unhandled case when reading POST requests which results in the s... |
| CVE-2022-0133 | HIGH | 7.5 | 1.2% | Jan 10, 2022 | peertube is vulnerable to Improper Access Control |
| CVE-2022-0132 | HIGH | 7.5 | 0.9% | Jan 10, 2022 | peertube is vulnerable to Server-Side Request Forgery (SSRF) |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now