2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-23433MEDIUM5.3Improper access control vulnerability in Reminder prior to versions 12.3.01.3000 in Android S(12), 12.2.05.6000 in Andro...
CVE-2022-23432MEDIUM6.7An improper input validation in SMC_SRPMB_WSM handler of RPMB ldfw prior to SMR Feb-2022 Release 1 allows arbitrary memo...
CVE-2022-23431MEDIUM6.7An improper boundary check in RPMB ldfw prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution...
CVE-2022-23429MEDIUM4.4An improper boundary check in audio hal service prior to SMR Feb-2022 Release 1 allows attackers to read invalid memory ...
CVE-2022-23426MEDIUM6A vulnerability using PendingIntent in DeX Home and DeX for PC prior to SMR Feb-2022 Release 1 allows attackers to acces...
CVE-2022-22291MEDIUM5.5Logging of excessive data vulnerability in telephony prior to SMR Feb-2022 Release 1 allows privileged attackers to get ...
CVE-2022-0562MEDIUM5.5Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory() in tif_dirread.c in libtiff ve...
CVE-2022-0561MEDIUM5.5Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff ...
CVE-2022-0382MEDIUM5.5An information leak flaw was found due to uninitialized memory in the Linux kernel's TIPC protocol subsystem, in the way...
CVE-2022-0560MEDIUM6.1Open Redirect in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-24959MEDIUM5.5An issue was discovered in the Linux kernel before 5.16.5. There is a memory leak in yam_siocdevprivate in drivers/net/h...
CVE-2022-23321MEDIUM4.8A persistent cross-site scripting (XSS) vulnerability exists on two input fields within the administrative panel when ed...
CVE-2022-20710MEDIUM5.3Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker t...
CVE-2022-20704MEDIUM4.8Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker t...
CVE-2022-20680MEDIUM6.5A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remot...
CVE-2022-20630MEDIUM4.4A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive info...
CVE-2022-0021MEDIUM5.5An information exposure through log file vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows tha...
CVE-2022-0020MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Palo Alto Network Cortex XSOAR web interface enables an authenticat...
CVE-2022-0019MEDIUM5.5An insufficiently protected credentials vulnerability exists in the Palo Alto Networks GlobalProtect app on Linux that e...
CVE-2022-0018MEDIUM6.5An information exposure vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows and MacOS where the ...
CVE-2022-0011MEDIUM6.5PAN-OS software provides options to exclude specific websites from URL category enforcement and those websites are block...
CVE-2022-24111MEDIUM5.3In Mahara 21.04 before 21.04.3 and 21.10 before 21.10.1, portfolios created in groups that have not been shared with non...
CVE-2022-0558MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-24320MEDIUM5.9A CWE-295: Improper Certificate Validation vulnerability exists that could allow a Man-in-theMiddle attack when communic...
CVE-2022-24319MEDIUM5.9A CWE-295: Improper Certificate Validation vulnerability exists that could allow a Man-in-theMiddle attack when communic...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now