2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45168 | MEDIUM | 6.5 | 0.5% | Jun 10, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v018. A Bypass of Two-Factor Authentication can occur und... |
| CVE-2022-4968 | MEDIUM | 6.5 | 0.3% | Jun 7, 2024 | netplan leaks the private key of wireguard to local users. Versions after 1.0 are not affected. |
| CVE-2022-28658 | MEDIUM | 5.5 | 0.2% | Jun 4, 2024 | Apport argument parsing mishandles filename splitting on older kernels resulting in argument spoofing |
| CVE-2022-28656 | MEDIUM | 5.5 | 0.2% | Jun 4, 2024 | is_closing_session() allows users to consume RAM in the Apport process |
| CVE-2022-28654 | MEDIUM | 5.5 | 0.3% | Jun 4, 2024 | is_closing_session() allows users to fill up apport.log |
| CVE-2022-28652 | MEDIUM | 5.5 | 0.2% | Jun 4, 2024 | ~/.config/apport/settings parsing is vulnerable to "billion laughs" attack |
| CVE-2022-25038 | MEDIUM | 6.1 | 0.3% | May 31, 2024 | wanEditor v4.7.11 was discovered to contain a cross-site scripting (XSS) vulnerability via the video upload function. |
| CVE-2022-25037 | MEDIUM | 5.4 | 0.3% | May 31, 2024 | An issue in wanEditor v4.7.11 and fixed in v.4.7.12 and v.5 was discovered to contain a cross-site scripting (XSS) vulne... |
| CVE-2022-43575 | MEDIUM | 5.4 | 0.2% | May 30, 2024 | IBM Aspera Console 3.4.0 through 3.4.2 PL5 is vulnerable to cross-site scripting. This vulnerability allows users to emb... |
| CVE-2022-43384 | MEDIUM | 5.4 | 0.2% | May 30, 2024 | IBM Aspera Console 3.4.0 through 3.4.2 PL5 is vulnerable to cross-site scripting. This vulnerability allows users to emb... |
| CVE-2022-4969 | MEDIUM | 5.3 | 0.2% | May 27, 2024 | A vulnerability, which was classified as critical, has been found in bwoodsend rockhopper up to 0.1.2. Affected by this ... |
| CVE-2022-48710 | MEDIUM | 5.5 | 0.3% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix a possible null pointer dereference... |
| CVE-2022-48709 | MEDIUM | 5.5 | 0.2% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ice: switch: fix potential memleak in ice_add_adv_r... |
| CVE-2022-48708 | MEDIUM | 5.5 | 0.2% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: single: fix potential NULL dereference Ad... |
| CVE-2022-48707 | MEDIUM | 5.5 | 0.2% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fix null pointer dereference for resett... |
| CVE-2022-48706 | MEDIUM | 5.5 | 0.2% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: vdpa: ifcvf: Do proper cleanup if IFCVF init fails ... |
| CVE-2022-45374 | MEDIUM | 6.5 | 0.8% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in YARPP allows PHP Local F... |
| CVE-2022-45070 | MEDIUM | 5.3 | 0.5% | May 17, 2024 | Missing Authorization vulnerability in FmeAddons Conditional Checkout Fields for WooCommerce.This issue affects Conditio... |
| CVE-2022-4967 | MEDIUM | 6.5 | 0.5% | May 14, 2024 | strongSwan versions 5.9.2 through 5.9.5 are affected by authorization bypass through improper validation of certificate ... |
| CVE-2022-32506 | MEDIUM | 6.4 | 0.4% | May 14, 2024 | An issue was discovered on certain Nuki Home Solutions devices. An attacker with physical access to the circuit board co... |
| CVE-2022-32502 | MEDIUM | 6.3 | 1.3% | May 14, 2024 | An issue was discovered on certain Nuki Home Solutions devices. There is a buffer overflow over the encrypted token pars... |
| CVE-2022-43656 | MEDIUM | 5.5 | 0.3% | May 7, 2024 | Bentley View FBX File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote ... |
| CVE-2022-43652 | MEDIUM | 5.5 | 0.3% | May 7, 2024 | Bentley View SKP File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote atta... |
| CVE-2022-22364 | MEDIUM | 5.3 | 0.5% | May 3, 2024 | IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 is vulnerable to external service interaction attack, caused by imprope... |
| CVE-2022-48705 | MEDIUM | 5.5 | 0.2% | May 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921e: fix crash in chip reset fail ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now