2022 CVE Vulnerabilities

27,528 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-21842HIGH7.8Microsoft Word Remote Code Execution Vulnerability
CVE-2022-21841HIGH7.8Microsoft Excel Remote Code Execution Vulnerability
CVE-2022-21840HIGH8.8Microsoft Office Remote Code Execution Vulnerability
CVE-2022-21838HIGH7.8Windows Cleanup Manager Elevation of Privilege Vulnerability
CVE-2022-21837HIGH8.8Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2022-21836HIGH7.8Windows Certificate Spoofing Vulnerability
CVE-2022-21835HIGH7.8Microsoft Cryptographic Services Elevation of Privilege Vulnerability
CVE-2022-21834HIGH7.8Windows User-mode Driver Framework Reflector Driver Elevation of Privilege Vulnerability
CVE-2022-21833HIGH7.8Virtual Machine IDE Drive Elevation of Privilege Vulnerability
CVE-2022-21669HIGH7.5PuddingBot is a group management bot. In version 0.0.6-b933652 and prior, the bot token is publicly exposed in main.py, ...
CVE-2022-0144HIGH7.1shelljs is vulnerable to Improper Privilege Management
CVE-2022-21668HIGH8.6pipenv is a Python development workflow tool. Starting with version 2018.10.9 and prior to version 2022.1.8, a flaw in p...
CVE-2022-21666HIGH7.2Useful Simple Open-Source CMS (USOC) is a content management system (CMS) for programmers. Versions prior to Pb2.4Bfx3 a...
CVE-2022-22121HIGH8In NocoDB, versions 0.81.0 through 0.83.8 are affected by CSV Injection vulnerability (Formula Injection). A low privile...
CVE-2022-22827HIGH8.8storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2022-22826HIGH8.8nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2022-22825HIGH8.8lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2022-22288HIGH7.5Improper authorization vulnerability in Galaxy Store prior to 4.5.36.5 allows remote app installation of the allowlist.
CVE-2022-22286HIGH7.1A vulnerability using PendingIntent in Bixby Routines prior to version 3.1.21.8 in Android R(11.0) and 2.6.30.5 in Andro...
CVE-2022-22285HIGH7.1A vulnerability using PendingIntent in Reminder prior to version 12.2.05.0 in Android R(11.0) and 12.3.02.1000 in Androi...
CVE-2022-22265HIGH7.8An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary m...
CVE-2022-22264HIGH7.1Improper sanitization of incoming intent in Dressroom prior to SMR Jan-2022 Release 1 allows local attackers to read and...
CVE-2022-21667HIGH7.5soketi is an open-source WebSockets server. There is an unhandled case when reading POST requests which results in the s...
CVE-2022-0133HIGH7.5peertube is vulnerable to Improper Access Control
CVE-2022-0132HIGH7.5peertube is vulnerable to Server-Side Request Forgery (SSRF)

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now