2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-44550 | HIGH | 7.5 | 0.5% | Nov 9, 2022 | The graphics display module has a UAF vulnerability when traversing graphic layers. Successful exploitation of this vuln... |
| CVE-2022-44549 | HIGH | 7.5 | 0.4% | Nov 9, 2022 | The LBS module has a vulnerability in geofencing API access. Successful exploitation of this vulnerability may cause thi... |
| CVE-2022-44548 | MEDIUM | 4.3 | 0.2% | Nov 9, 2022 | There is a vulnerability in permission verification during the Bluetooth pairing process. Successful exploitation of thi... |
| CVE-2022-44547 | HIGH | 7.5 | 0.5% | Nov 9, 2022 | The Display Service module has a UAF vulnerability. Successful exploitation of this vulnerability may affect the display... |
| CVE-2022-44546 | HIGH | 7.5 | 0.5% | Nov 9, 2022 | The kernel module has the vulnerability that the mapping is not cleared after the memory is automatically released. Succ... |
| CVE-2022-43310 | HIGH | 7.8 | 1.6% | Nov 9, 2022 | An Uncontrolled Search Path Element in Foxit Software released Foxit Reader v11.2.118.51569 allows attackers to escalate... |
| CVE-2022-43058 | CRITICAL | 9.8 | 0.6% | Nov 9, 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramete... |
| CVE-2022-43031 | HIGH | 8.8 | 0.5% | Nov 9, 2022 | DedeCMS v6.1.9 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily add A... |
| CVE-2022-31689 | CRITICAL | 9.8 | 0.8% | Nov 9, 2022 | VMware Workspace ONE Assist prior to 22.10 contains a Session fixation vulnerability. A malicious actor who obtains a va... |
| CVE-2022-31688 | MEDIUM | 6.1 | 0.4% | Nov 9, 2022 | VMware Workspace ONE Assist prior to 22.10 contains a Reflected cross-site scripting (XSS) vulnerability. Due to imprope... |
| CVE-2022-31687 | CRITICAL | 9.8 | 0.8% | Nov 9, 2022 | VMware Workspace ONE Assist prior to 22.10 contains a Broken Access Control vulnerability. A malicious actor with networ... |
| CVE-2022-31686 | CRITICAL | 9.8 | 0.9% | Nov 9, 2022 | VMware Workspace ONE Assist prior to 22.10 contains a Broken Authentication Method vulnerability. A malicious actor with... |
| CVE-2022-31685 | CRITICAL | 9.8 | 1.0% | Nov 9, 2022 | VMware Workspace ONE Assist prior to 22.10 contains an Authentication Bypass vulnerability. A malicious actor with netwo... |
| CVE-2022-29836 | MEDIUM | 4.3 | 0.3% | Nov 9, 2022 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability was discovered via an HTTP ... |
| CVE-2022-27674 | HIGH | 7.5 | 0.7% | Nov 9, 2022 | Insufficient validation in the IOCTL input/output buffer in AMD μProf may allow an attacker to bypass bounds checks pote... |
| CVE-2022-27673 | HIGH | 7.5 | 0.6% | Nov 9, 2022 | Insufficient access controls in the AMD Link Android app may potentially result in information disclosure. |
| CVE-2022-23831 | HIGH | 7.5 | 0.7% | Nov 9, 2022 | Insufficient validation of the IOCTL input buffer in AMD μProf may allow an attacker to send an arbitrary buffer leading... |
| CVE-2022-23824 | MEDIUM | 5.5 | 0.6% | Nov 9, 2022 | IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential in... |
| CVE-2022-42966 | HIGH | 7.5 | 0.9% | Nov 9, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the cleo PyPI package, when an attacker ... |
| CVE-2022-42965 | HIGH | 7.5 | 0.8% | Nov 9, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the snowflake-connector-python PyPI pack... |
| CVE-2022-42964 | HIGH | 7.5 | 0.8% | Nov 9, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the pymatgen PyPI package, when an attac... |
| CVE-2022-3450 | HIGH | 8.8 | 0.6% | Nov 9, 2022 | Use after free in Peer Connection in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially expl... |
| CVE-2022-3449 | HIGH | 8.8 | 0.4% | Nov 9, 2022 | Use after free in Safe Browsing in Google Chrome prior to 106.0.5249.119 allowed an attacker who convinced a user to ins... |
| CVE-2022-3448 | HIGH | 8.8 | 0.7% | Nov 9, 2022 | Use after free in Permissions API in Google Chrome prior to 106.0.5249.119 allowed a remote attacker who convinced a use... |
| CVE-2022-3447 | MEDIUM | 4.3 | 0.5% | Nov 9, 2022 | Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 106.0.5249.119 allowed a remote attacke... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now