2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-22108 | MEDIUM | 4.3 | 0.7% | Jan 5, 2022 | In Daybyday CRM, versions 2.0.0 through 2.2.0 are vulnerable to Missing Authorization. An attacker that has the lowest p... |
| CVE-2022-22107 | MEDIUM | 4.3 | 0.7% | Jan 5, 2022 | In Daybyday CRM, versions 2.0.0 through 2.2.0 are vulnerable to Missing Authorization. An attacker that has the lowest p... |
| CVE-2022-21650 | MEDIUM | 5.4 | 0.8% | Jan 4, 2022 | Convos is an open source multi-user chat that runs in a web browser. You can't use SVG extension in Convos' chat window,... |
| CVE-2022-21649 | MEDIUM | 5.4 | 0.9% | Jan 4, 2022 | Convos is an open source multi-user chat that runs in a web browser. Characters starting with "https://" in the chat win... |
| CVE-2022-21648 | MEDIUM | 6.1 | 0.8% | Jan 4, 2022 | Latte is an open source template engine for PHP. Versions since 2.8.0 Latte has included a template sandbox and in affec... |
| CVE-2022-20023 | MEDIUM | 6.5 | 0.3% | Jan 4, 2022 | In Bluetooth, there is a possible application crash due to bluetooth flooding a device with LMP_AU_rand packet. This cou... |
| CVE-2022-20022 | MEDIUM | 6.5 | 0.3% | Jan 4, 2022 | In Bluetooth, there is a possible link disconnection due to bluetooth does not properly handle a connection attempt from... |
| CVE-2022-20021 | MEDIUM | 6.5 | 0.3% | Jan 4, 2022 | In Bluetooth, there is a possible application crash due to bluetooth does not properly handle the reception of multiple ... |
| CVE-2022-20020 | MEDIUM | 5.5 | 0.1% | Jan 4, 2022 | In libvcodecdrv, there is a possible information disclosure due to a missing bounds check. This could lead to local info... |
| CVE-2022-20019 | MEDIUM | 5.5 | 0.1% | Jan 4, 2022 | In libMtkOmxGsmDec, there is a possible information disclosure due to an incorrect bounds check. This could lead to loca... |
| CVE-2022-20018 | MEDIUM | 4.4 | 0.1% | Jan 4, 2022 | In seninf driver, there is a possible information disclosure due to uninitialized data. This could lead to local informa... |
| CVE-2022-20016 | MEDIUM | 6.7 | 0.1% | Jan 4, 2022 | In vow driver, there is a possible memory corruption due to improper locking. This could lead to local escalation of pri... |
| CVE-2022-20015 | MEDIUM | 4.4 | 0.1% | Jan 4, 2022 | In kd_camera_hw driver, there is a possible information disclosure due to uninitialized data. This could lead to local i... |
| CVE-2022-20014 | MEDIUM | 6.7 | 0.1% | Jan 4, 2022 | In vow driver, there is a possible memory corruption due to improper input validation. This could lead to local escalati... |
| CVE-2022-20013 | MEDIUM | 6.4 | 0.1% | Jan 4, 2022 | In vow driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of pri... |
| CVE-2022-0083 | MEDIUM | 5.3 | 0.9% | Jan 4, 2022 | livehelperchat is vulnerable to Generation of Error Message Containing Sensitive Information |
| CVE-2022-0079 | MEDIUM | 5.3 | 1.0% | Jan 3, 2022 | showdoc is vulnerable to Generation of Error Message Containing Sensitive Information |
| CVE-2022-22293 | MEDIUM | 5.4 | 0.7% | Jan 2, 2022 | admin/limits.php in Dolibarr 7.0.2 allows HTML injection, as demonstrated by the MAIN_MAX_DECIMALS_TOT parameter. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now