2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23433 | MEDIUM | 5.3 | 0.6% | Feb 11, 2022 | Improper access control vulnerability in Reminder prior to versions 12.3.01.3000 in Android S(12), 12.2.05.6000 in Andro... |
| CVE-2022-23432 | MEDIUM | 6.7 | 0.1% | Feb 11, 2022 | An improper input validation in SMC_SRPMB_WSM handler of RPMB ldfw prior to SMR Feb-2022 Release 1 allows arbitrary memo... |
| CVE-2022-23431 | MEDIUM | 6.7 | 0.1% | Feb 11, 2022 | An improper boundary check in RPMB ldfw prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution... |
| CVE-2022-23429 | MEDIUM | 4.4 | 0.1% | Feb 11, 2022 | An improper boundary check in audio hal service prior to SMR Feb-2022 Release 1 allows attackers to read invalid memory ... |
| CVE-2022-23426 | MEDIUM | 6 | 0.1% | Feb 11, 2022 | A vulnerability using PendingIntent in DeX Home and DeX for PC prior to SMR Feb-2022 Release 1 allows attackers to acces... |
| CVE-2022-22291 | MEDIUM | 5.5 | 0.1% | Feb 11, 2022 | Logging of excessive data vulnerability in telephony prior to SMR Feb-2022 Release 1 allows privileged attackers to get ... |
| CVE-2022-0562 | MEDIUM | 5.5 | 1.3% | Feb 11, 2022 | Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory() in tif_dirread.c in libtiff ve... |
| CVE-2022-0561 | MEDIUM | 5.5 | 1.3% | Feb 11, 2022 | Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff ... |
| CVE-2022-0382 | MEDIUM | 5.5 | 0.4% | Feb 11, 2022 | An information leak flaw was found due to uninitialized memory in the Linux kernel's TIPC protocol subsystem, in the way... |
| CVE-2022-0560 | MEDIUM | 6.1 | 1.0% | Feb 11, 2022 | Open Redirect in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-24959 | MEDIUM | 5.5 | 0.4% | Feb 11, 2022 | An issue was discovered in the Linux kernel before 5.16.5. There is a memory leak in yam_siocdevprivate in drivers/net/h... |
| CVE-2022-23321 | MEDIUM | 4.8 | 0.8% | Feb 10, 2022 | A persistent cross-site scripting (XSS) vulnerability exists on two input fields within the administrative panel when ed... |
| CVE-2022-20710 | MEDIUM | 5.3 | 2.3% | Feb 10, 2022 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker t... |
| CVE-2022-20704 | MEDIUM | 4.8 | 2.2% | Feb 10, 2022 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker t... |
| CVE-2022-20680 | MEDIUM | 6.5 | 1.1% | Feb 10, 2022 | A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remot... |
| CVE-2022-20630 | MEDIUM | 4.4 | 0.2% | Feb 10, 2022 | A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive info... |
| CVE-2022-0021 | MEDIUM | 5.5 | 0.2% | Feb 10, 2022 | An information exposure through log file vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows tha... |
| CVE-2022-0020 | MEDIUM | 5.4 | 1.7% | Feb 10, 2022 | A stored cross-site scripting (XSS) vulnerability in Palo Alto Network Cortex XSOAR web interface enables an authenticat... |
| CVE-2022-0019 | MEDIUM | 5.5 | 0.2% | Feb 10, 2022 | An insufficiently protected credentials vulnerability exists in the Palo Alto Networks GlobalProtect app on Linux that e... |
| CVE-2022-0018 | MEDIUM | 6.5 | 0.7% | Feb 10, 2022 | An information exposure vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows and MacOS where the ... |
| CVE-2022-0011 | MEDIUM | 6.5 | 0.7% | Feb 10, 2022 | PAN-OS software provides options to exclude specific websites from URL category enforcement and those websites are block... |
| CVE-2022-24111 | MEDIUM | 5.3 | 0.8% | Feb 10, 2022 | In Mahara 21.04 before 21.04.3 and 21.10 before 21.10.1, portfolios created in groups that have not been shared with non... |
| CVE-2022-0558 | MEDIUM | 5.4 | 0.9% | Feb 10, 2022 | Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-24320 | MEDIUM | 5.9 | 0.5% | Feb 9, 2022 | A CWE-295: Improper Certificate Validation vulnerability exists that could allow a Man-in-theMiddle attack when communic... |
| CVE-2022-24319 | MEDIUM | 5.9 | 0.6% | Feb 9, 2022 | A CWE-295: Improper Certificate Validation vulnerability exists that could allow a Man-in-theMiddle attack when communic... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now