2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-39804HIGH7.8Due to lack of proper memory management, when a victim opens a manipulated SolidWorks Part (.sldprt, CoreCadTranslator.e...
CVE-2022-39803HIGH7.8Due to lack of proper memory management, when a victim opens a manipulated ACIS Part and Assembly (.sat, CoreCadTranslat...
CVE-2022-39802HIGH7.5SAP Manufacturing Execution - versions 15.1, 15.2, 15.3, allows an attacker to exploit insufficient validation of a file...
CVE-2022-39800MEDIUM6.1SAP BusinessObjects BI LaunchPad - versions 420, 430, is susceptible to script execution attack by an unauthenticated at...
CVE-2022-39015MEDIUM6.5Under certain conditions, BOE AdminTools/ BOE SDK allows an attacker to access information which would otherwise be rest...
CVE-2022-39013HIGH7.6Under certain conditions an authenticated attacker can get access to OS credentials. Getting access to OS credentials en...
CVE-2022-38138HIGH7.5The Triangle Microworks IEC 61850 Library (Any client or server using the C language library with a version number of 11...
CVE-2022-35299CRITICAL9.8SAP SQL Anywhere - version 17.0, and SAP IQ - version 16.1, allows an attacker to leverage logical errors in memory mana...
CVE-2022-35297MEDIUM5.4The application SAP Enable Now does not sufficiently encode user-controlled inputs over the network before it is placed ...
CVE-2022-35296MEDIUM4.9Under certain conditions, the application SAP BusinessObjects Business Intelligence Platform (Version Management System)...
CVE-2022-35226MEDIUM6.1SAP Data Services Management allows an attacker to copy the data from a request and echoed into the application's immedi...
CVE-2022-31682MEDIUM4.9VMware Aria Operations contains an arbitrary file read vulnerability. A malicious actor with administrative privileges m...
CVE-2022-38086MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Shortcodes Ultimate plugin <= 5.12.0 at WordPress leading to plugin p...
CVE-2022-20440MEDIUM5.5In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android...
CVE-2022-20439MEDIUM5.5In Messaging, There has unauthorized provider, this could cause Local Deny of Service.Product: AndroidVersions: Android ...
CVE-2022-20438MEDIUM5.5In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android...
CVE-2022-20437MEDIUM5.5In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android...
CVE-2022-20436HIGH7.8There is an unauthorized service in the system service. Since the component does not have permission check, resulting in...
CVE-2022-20435HIGH7.8There is a Unauthorized service in the system service, may cause the system reboot. Since the component does not have pe...
CVE-2022-20434HIGH7.8There is an missing authorization issue in the system service. Since the component does not have permission check , resu...
CVE-2022-20433HIGH7.8There is an missing authorization issue in the system service. Since the component does not have permission check , resu...
CVE-2022-20432HIGH7.8There is an missing authorization issue in the system service. Since the component does not have permission check and pe...
CVE-2022-20431HIGH7.8There is an missing authorization issue in the system service. Since the component does not have permission check , resu...
CVE-2022-20430HIGH7.8There is an missing authorization issue in the system service. Since the component does not have permission check , resu...
CVE-2022-20429HIGH8.8In CarSettings of app packages, there is a possible permission bypass due to a confused deputy. This could lead to local...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now