2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-0294MEDIUM6.5Inappropriate implementation in Push messaging in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who had ...
CVE-2022-0292MEDIUM6.5Inappropriate implementation in Fenced Frames in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who had c...
CVE-2022-0291MEDIUM6.5Inappropriate implementation in Storage in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who had comprom...
CVE-2022-0120MEDIUM6.5Inappropriate implementation in Passwords in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentiall...
CVE-2022-0118MEDIUM4.3Inappropriate implementation in WebShare in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially...
CVE-2022-0117MEDIUM6.5Policy bypass in Blink in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a ...
CVE-2022-0116MEDIUM4.3Inappropriate implementation in Compositing in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to spoof th...
CVE-2022-0113MEDIUM6.5Inappropriate implementation in Blink in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-ori...
CVE-2022-0112MEDIUM4.3Incorrect security UI in Browser UI in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to display missing ...
CVE-2022-0111MEDIUM6.5Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to incorrect...
CVE-2022-0110MEDIUM4.3Incorrect security UI in Autofill in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to spoof the contents...
CVE-2022-0109MEDIUM6.5Inappropriate implementation in Autofill in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to obtain pote...
CVE-2022-0108MEDIUM6.5Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cros...
CVE-2022-24968MEDIUM5.9In Mellium mellium.im/xmpp through 0.21.0, an attacker capable of spoofing DNS TXT records can redirect a WebSocket conn...
CVE-2022-23634MEDIUM5.9Puma is a Ruby/Rack web server built for parallelism. Prior to `puma` version `5.6.2`, `puma` may not always call `close...
CVE-2022-23633MEDIUM5.9Action Pack is a framework for handling and responding to web requests. Under certain circumstances response bodies will...
CVE-2022-22766MEDIUM5.5Hardcoded credentials are used in specific BD Pyxis products. If exploited, threat actors may be able to gain access to ...
CVE-2022-24926MEDIUM5.4Improper input validation vulnerability in SmartTagPlugin prior to version 1.2.15-6 allows privileged attackers to trigg...
CVE-2022-24925MEDIUM6.5Improper input validation vulnerability in SettingsProvider prior to Android S(12) allows privileged attackers to trigge...
CVE-2022-24924MEDIUM5.3An improper access control in LiveWallpaperService prior to versions 3.0.9.0 allows to create a specific named system di...
CVE-2022-24003MEDIUM5.3Exposure of Sensitive Information vulnerability in Bixby Vision prior to version 3.7.50.6 allows attackers to access int...
CVE-2022-24002MEDIUM5.3Improper Authorization vulnerability in Link Sharing prior to version 12.4.00.3 allows attackers to open protected activ...
CVE-2022-24001MEDIUM4.6Information disclosure vulnerability in Edge Panel prior to Android S(12) allows physical attackers to access screenshot...
CVE-2022-23998MEDIUM5.5Improper access control vulnerability in Camera prior to versions 11.1.02.16 in Android R(11), 10.5.03.77 in Android Q(1...
CVE-2022-23707MEDIUM5.4An XSS vulnerability was found in Kibana index patterns. Using this vulnerability, an authenticated user with permission...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now