2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-20056MEDIUM6.6In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local esca...
CVE-2022-20055MEDIUM6.8In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local esca...
CVE-2022-20051MEDIUM5.5In ims service, there is a possible unexpected application behavior due to incorrect privilege assignment. This could le...
CVE-2022-20050MEDIUM6.7In connsyslogger, there is a possible symbolic link following due to improper link resolution. This could lead to local ...
CVE-2022-20049MEDIUM6.7In vpu, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalati...
CVE-2022-0904MEDIUM6.5A stack overflow bug in the document extractor in Mattermost Server in versions up to and including 6.3.2 allows an atta...
CVE-2022-0865MEDIUM6.5Reachable Assertion in tiffcp in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. Fo...
CVE-2022-0856MEDIUM6.5libcaca is affected by a Divide By Zero issue via img2txt, which allows a remote malicious user to cause a Denial of Ser...
CVE-2022-0433MEDIUM5.5A NULL pointer dereference flaw was found in the Linux kernel's BPF subsystem in the way a user triggers the map_get_nex...
CVE-2022-0906MEDIUM4.8Unrestricted file upload leads to stored XSS in GitHub repository microweber/microweber prior to 1.1.12.
CVE-2022-0890MEDIUM5.5NULL Pointer Dereference in GitHub repository mruby/mruby prior to 3.2.
CVE-2022-24747MEDIUM5.3Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. Affected vers...
CVE-2022-24746MEDIUM6.1Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. In affected v...
CVE-2022-24745MEDIUM6.5Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. In affected v...
CVE-2022-24323MEDIUM5.9A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause a disruption of co...
CVE-2022-24322MEDIUM5.9A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause...
CVE-2022-24741MEDIUM6.5Nextcloud server is an open source, self hosted cloud style services platform. In affected versions an attacker can caus...
CVE-2022-24919MEDIUM4.4An authenticated user can create a link with reflected Javascript code inside it for graphs’ page and send it to other u...
CVE-2022-24918MEDIUM4.4An authenticated user can create a link with reflected Javascript code inside it for items’ page and send it to other us...
CVE-2022-24917MEDIUM4.4An authenticated user can create a link with reflected Javascript code inside it for services’ page and send it to other...
CVE-2022-24349MEDIUM4.4An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malic...
CVE-2022-22511MEDIUM5.4Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized ...
CVE-2022-0022MEDIUM4.4Usage of a weak cryptographic algorithm in Palo Alto Networks PAN-OS software where the password hashes of administrator...
CVE-2022-24526MEDIUM6.1Visual Studio Code Spoofing Vulnerability
CVE-2022-24522MEDIUM6.5Skype Extension for Chrome Information Disclosure Vulnerability

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now