2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-37892MEDIUM5.4A vulnerability in the Aruba InstantOS and ArubaOS 10 web management interface could allow an unauthenticated remote att...
CVE-2022-37891CRITICAL9.8Unauthenticated buffer overflow vulnerabilities exist within the Aruba InstantOS and ArubaOS 10 web management interface...
CVE-2022-37890CRITICAL9.8Unauthenticated buffer overflow vulnerabilities exist within the Aruba InstantOS and ArubaOS 10 web management interface...
CVE-2022-37889CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2022-37887CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2022-37886CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2022-37885CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2022-21936MEDIUM6.5On Metasys ADX Server version 12.0 running MVE, an Active Directory user could execute validated actions without providi...
CVE-2022-41291MEDIUM6.5IBM InfoSphere Information Server 11.7 does not invalidate session after logout which could allow an authenticated user ...
CVE-2022-36772MEDIUM6.5IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information that should onl...
CVE-2022-34308MEDIUM5.5IBM CICS TX 11.1 could allow a local user to cause a denial of service due to improper load handling. IBM X-Force ID: 22...
CVE-2022-30613MEDIUM5.5IBM QRadar SIEM 7.4 and 7.5 could disclose sensitive information via a local service to a privileged user. IBM X-Force I...
CVE-2022-22493HIGH8.8IBM WebSphere Automation for Cloud Pak for Watson AIOps 1.4.2 is vulnerable to cross-site request forgery, caused by imp...
CVE-2022-22480HIGH7.5IBM QRadar SIEM 7.4 and 7.5 data node rebalancing does not function correctly when using encrypted hosts which could res...
CVE-2022-39878MEDIUM5.5Improper access control vulnerability in Samsung Checkout prior to version 5.0.55.3 allows attackers to access sensitive...
CVE-2022-39877MEDIUM5.3Improper access control vulnerability in ProfileSharingAccount in Group Sharing prior to versions 13.0.6.15 in Android S...
CVE-2022-39876LOW3.3Insertion of Sensitive Information into Log in PushRegIdUpdateClient of SReminder prior to 8.2.01.13 allows attacker to ...
CVE-2022-39875MEDIUM4.4Improper component protection vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized ...
CVE-2022-39874MEDIUM5.5Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthori...
CVE-2022-39873MEDIUM4.6Improper authorization vulnerability in Samsung Internet prior to version 18.0.4.14 allows physical attackers to add boo...
CVE-2022-39872LOW3.3Improper restriction of broadcasting Intent in ShareLive prior to version 13.2.03.5 leaks MAC address of the connected B...
CVE-2022-39871HIGH7.5Improper access control vulnerability cloudNotificationManager.java in SmartThings prior to version 1.7.89.0 allows atta...
CVE-2022-39870HIGH7.5Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows atta...
CVE-2022-39869HIGH7.5Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows atta...
CVE-2022-39868HIGH7.5Improper access control vulnerability in GedSamsungAccount.kt SmartThings prior to version 1.7.89.0 allows attackers to ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now