2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-1401 | HIGH | 7.5 | 18.0% | Aug 17, 2022 | Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appli... |
| CVE-2022-1400 | CRITICAL | 9.8 | 0.7% | Aug 17, 2022 | Use of Hard-coded Cryptographic Key vulnerability in the WebReportsApi.dll of Exago Web Reports, as used in the Device42... |
| CVE-2022-1399 | CRITICAL | 9.1 | 0.8% | Aug 17, 2022 | An Argument Injection or Modification vulnerability in the "Change Secret" username field as used in the Discovery compo... |
| CVE-2022-25799 | MEDIUM | 6.1 | 0.5% | Aug 16, 2022 | An open redirect vulnerability exists in CERT/CC VINCE software prior to 1.50.0. An attacker could send a link that has ... |
| CVE-2022-38238 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::lookChar() at /xpdf/Stream.cc. |
| CVE-2022-38237 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readScan() at /xpdf/Stream.cc. |
| CVE-2022-38236 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a global-buffer overflow via Lexer::getObj(Object*) at /xpdf/Lexer.cc. |
| CVE-2022-38235 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a segmentation violation via DCTStream::getChar() at /xpdf/Stream.cc. |
| CVE-2022-38234 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a segmentation violation via Lexer::getObj(Object*) at /xpdf/Lexer.cc. |
| CVE-2022-38233 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a segmentation violation via DCTStream::readMCURow() at /xpdf/Stream.cc. |
| CVE-2022-38231 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::getChar() at /xpdf/Stream.cc. |
| CVE-2022-38230 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a floating point exception (FPE) via DCTStream::decodeImage() at /xpdf/Str... |
| CVE-2022-38229 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readHuffSym(DCTHuffTable*) at /xpdf/... |
| CVE-2022-38228 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::transformDataUnit at /xpdf/Stream.cc... |
| CVE-2022-38227 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | XPDF commit ffaf11c was discovered to contain a stack overflow via __asan_memcpy at asan_interceptors_memintrinsics.cpp. |
| CVE-2022-37781 | HIGH | 7.8 | 0.3% | Aug 16, 2022 | fdkaac v1.0.3 was discovered to contain a heap buffer overflow via __interceptor_memcpy.part.46 at /sanitizer_common/san... |
| CVE-2022-37439 | MEDIUM | 5.5 | 0.2% | Aug 16, 2022 | In Splunk Enterprise and Universal Forwarder versions in the following table, indexing a specially crafted ZIP file usin... |
| CVE-2022-37438 | LOW | 3.5 | 0.4% | Aug 16, 2022 | In Splunk Enterprise versions in the following table, an authenticated user can craft a dashboard that could potentially... |
| CVE-2022-37437 | CRITICAL | 9.8 | 0.4% | Aug 16, 2022 | When using Ingest Actions to configure a destination that resides on Amazon Simple Storage Service (S3) in Splunk Web, T... |
| CVE-2022-36155 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | tifig v0.2.2 was discovered to contain a resource allocation issue via operator new(unsigned long) at asan_new_delete.cp... |
| CVE-2022-36153 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | tifig v0.2.2 was discovered to contain a segmentation violation via std::vector<unsigned int, std::allocator<unsigned in... |
| CVE-2022-36152 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | tifig v0.2.2 was discovered to contain a memory leak via operator new[](unsigned long) at /asan/asan_new_delete.cpp. |
| CVE-2022-36151 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | tifig v0.2.2 was discovered to contain a segmentation violation via getType() at /common/bbox.cpp. |
| CVE-2022-36150 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | tifig v0.2.2 was discovered to contain a heap-buffer overflow via __asan_memmove at /asan/asan_interceptors_memintrinsic... |
| CVE-2022-36149 | MEDIUM | 5.5 | 0.3% | Aug 16, 2022 | tifig v0.2.2 was discovered to contain a heap-use-after-free via temInfoEntry(). |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now