2022 CVE Vulnerabilities

27,528 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-3821MEDIUM5.5An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supp...
CVE-2022-39386HIGH7.5@fastify/websocket provides WebSocket support for Fastify. Any application using @fastify/websocket could crash if a spe...
CVE-2022-37015CRITICAL9.8Symantec Endpoint Detection and Response (SEDR) Appliance, prior to 4.7.0, may be susceptible to a privilege escalation ...
CVE-2022-34825CRITICAL9.8Uncontrolled Search Path Element in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earli...
CVE-2022-34824CRITICAL9.8Weak File and Folder Permissions vulnerability in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Win...
CVE-2022-34823CRITICAL9.8Buffer overflow vulnerability in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier,...
CVE-2022-34822CRITICAL9.8Path traversal vulnerability in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier, ...
CVE-2022-27516CRITICAL9.8User login brute force protection functionality bypass
CVE-2022-27513CRITICAL9.6Remote desktop takeover via phishing
CVE-2022-27510CRITICAL9.8Unauthorized access to Gateway user capabilities
CVE-2022-20465MEDIUM4.6In dismiss and related functions of KeyguardHostViewController.java and related files, there is a possible lockscreen by...
CVE-2022-20463Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-20462HIGH7.8In phNxpNciHal_write_unlocked of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. ...
CVE-2022-20457MEDIUM5.5In getMountModeInternal of StorageManagerService.java, there is a possible prevention of package installation due to imp...
CVE-2022-20454MEDIUM6.7In fdt_next_tag of fdt.c, there is a possible out of bounds write due to an integer overflow. This could lead to local e...
CVE-2022-20453MEDIUM5.5In update of MmsProvider.java, there is a possible constriction of directory permissions due to a path traversal error. ...
CVE-2022-20452HIGH7.8In initializeFromParcelLocked of BaseBundle.java, there is a possible method arbitrary code execution due to a confused ...
CVE-2022-20451HIGH7.8In onCallRedirectionComplete of CallsManager.java, there is a possible permissions bypass due to a missing permission ch...
CVE-2022-20450HIGH7.8In restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way to bypass user consent due to a ...
CVE-2022-20448MEDIUM5.5In buzzBeepBlinkLocked of NotificationManagerService.java, there is a possible way to share data across users due to a p...
CVE-2022-20447MEDIUM6.5In PAN_WriteBuf of pan_api.cc, there is a possible out of bounds read due to a use after free. This could lead to remote...
CVE-2022-20446LOW3.3In AlwaysOnHotwordDetector of AlwaysOnHotwordDetector.java, there is a possible way to access the microphone from the ba...
CVE-2022-20445HIGH7.5In process_service_search_rsp of sdp_discovery.cc, there is a possible out of bounds read due to improper input validati...
CVE-2022-20441HIGH7.8In navigateUpTo of Task.java, there is a possible way to launch an unexported intent handler due to a logic error in the...
CVE-2022-20426MEDIUM5.5In multiple functions of many files, there is a possible obstruction of the user's ability to select a phone account due...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now