2022 CVE Vulnerabilities

27,531 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-43039MEDIUM5.5GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function gf_isom_meta_r...
CVE-2022-43038MEDIUM6.5Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadCache() function in mp42ts.
CVE-2022-43037MEDIUM6.5An issue was discovered in Bento4 1.6.0-639. There is a memory leak in the function AP4_File::ParseStream in /Core/Ap4Fi...
CVE-2022-43035MEDIUM6.5An issue was discovered in Bento4 v1.6.0-639. There is a heap-buffer-overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4Dec3At...
CVE-2022-43034MEDIUM6.5An issue was discovered in Bento4 v1.6.0-639. There is a heap buffer overflow vulnerability in the AP4_BitReader::SkipBi...
CVE-2022-43033MEDIUM6.5An issue was discovered in Bento4 1.6.0-639. There is a bad free in the component AP4_HdlrAtom::~AP4_HdlrAtom() which al...
CVE-2022-43032MEDIUM6.5An issue was discovered in Bento4 v1.6.0-639. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStrea...
CVE-2022-39301MEDIUM5.4sra-admin is a background rights management system that separates the front and back end. sra-admin version 1.1.1 has a ...
CVE-2022-23734HIGH8.8A deserialization of untrusted data vulnerability was identified in GitHub Enterprise Server that could potentially lead...
CVE-2022-3608HIGH8.4Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.0-alpha.
CVE-2022-3607MEDIUM6Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository octoprint/o...
CVE-2022-39267HIGH8.8Bifrost is a heterogeneous middleware that synchronizes MySQL, MariaDB to Redis, MongoDB, ClickHouse, MySQL and other se...
CVE-2022-41415CRITICAL9.8Acer Altos W2000h-W570h F4 R01.03.0018 was discovered to contain a stack overflow in the RevserveMem component. This vul...
CVE-2022-39260HIGH8.8Git is an open source, scalable, distributed revision control system. `git shell` is a restricted login shell that can b...
CVE-2022-39253MEDIUM5.5Git is an open source, scalable, distributed revision control system. Versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, ...
CVE-2022-39233MEDIUM5.4Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In versions 12.9....
CVE-2022-33217HIGH7.8Memory corruption in Qualcomm IPC due to buffer copy without checking the size of input while starting communication wit...
CVE-2022-33214HIGH7Memory corruption in display due to time-of-check time-of-use of metadata reserved size in Snapdragon Auto, Snapdragon C...
CVE-2022-33210HIGH7.8Memory corruption in automotive multimedia due to use of out-of-range pointer offset while parsing command request packe...
CVE-2022-25750HIGH8.8Memory corruption in BTHOST due to double free while music playback and calls over bluetooth headset in Snapdragon Mobil...
CVE-2022-25749HIGH7.5Transient Denial-of-Service in WLAN due to buffer over-read while parsing MDNS frames. in Snapdragon Auto, Snapdragon Co...
CVE-2022-25748CRITICAL9.8Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapd...
CVE-2022-25736HIGH7.5Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdra...
CVE-2022-25723HIGH7.8Memory corruption in multimedia due to use after free during callback registration failure in Snapdragon Mobile
CVE-2022-25720CRITICAL9.8Memory corruption in WLAN due to out of bound array access during connect/roaming in Snapdragon Auto, Snapdragon Compute...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now