2022 CVE Vulnerabilities
27,541 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-20345 | HIGH | 8.8 | 0.4% | Aug 10, 2022 | In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds write due to a missing bounds check. This cou... |
| CVE-2022-20344 | HIGH | 7 | 0.1% | Aug 10, 2022 | In stealReceiveChannel of EventThread.cpp, there is a possible way to interfere with process communication due to a race... |
| CVE-2022-20239 | CRITICAL | 9.8 | 0.2% | Aug 10, 2022 | remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm... |
| CVE-2022-1962 | MEDIUM | 5.5 | 0.9% | Aug 10, 2022 | Uncontrolled recursion in the Parse functions in go/parser before Go 1.17.12 and Go 1.18.4 allow an attacker to cause a ... |
| CVE-2022-1705 | MEDIUM | 6.5 | 1.1% | Aug 10, 2022 | Acceptance of some invalid Transfer-Encoding headers in the HTTP/1 client in net/http before Go 1.17.12 and Go 1.18.4 al... |
| CVE-2022-35715 | HIGH | 7.5 | 0.8% | Aug 10, 2022 | IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed tec... |
| CVE-2022-35280 | CRITICAL | 9.8 | 0.7% | Aug 10, 2022 | IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 does not require that users should have strong passwords by de... |
| CVE-2022-34365 | MEDIUM | 6.5 | 0.7% | Aug 10, 2022 | WMS 3.7 contains a Path Traversal Vulnerability in Device API. An attacker could potentially exploit this vulnerability,... |
| CVE-2022-33931 | MEDIUM | 5.3 | 0.4% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI. An attacker with no ... |
| CVE-2022-33930 | HIGH | 7.5 | 0.5% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains Information Disclosure in Devices error pages. An attacker could pot... |
| CVE-2022-33929 | MEDIUM | 6.1 | 0.4% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains a Reflected Cross-Site Scripting Vulnerability in EndUserSummary pag... |
| CVE-2022-33928 | HIGH | 8.8 | 0.3% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains an Plain-text Password Storage Vulnerability in UI. An attacker with... |
| CVE-2022-33927 | MEDIUM | 6.5 | 0.4% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains a Session Fixation vulnerability. A unauthenticated attacker could e... |
| CVE-2022-33926 | MEDIUM | 6.5 | 0.4% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains an improper access control vulnerability. A remote malicious user co... |
| CVE-2022-33925 | MEDIUM | 6.5 | 0.7% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI. An remote authentica... |
| CVE-2022-33924 | MEDIUM | 5.3 | 0.4% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability with which an attacker with... |
| CVE-2022-29090 | MEDIUM | 6.5 | 0.3% | Aug 10, 2022 | Dell Wyse Management Suite 3.6.1 and below contains a Sensitive Data Exposure vulnerability. A low privileged malicious ... |
| CVE-2022-22490 | MEDIUM | 4.9 | 0.7% | Aug 10, 2022 | IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could allow a privileged user to obtain sensitive Azure bot cr... |
| CVE-2022-22411 | MEDIUM | 6.5 | 0.5% | Aug 10, 2022 | IBM Spectrum Scale Data Access Services (DAS) 5.1.3.1 could allow an authenticated user to insert code which could allow... |
| CVE-2022-22369 | HIGH | 7.1 | 0.2% | Aug 10, 2022 | IBM Workload Scheduler 9.4 and 9.5 could allow a local user to overwrite key system files which would cause the system t... |
| CVE-2022-20866 | HIGH | 7.5 | 17.2% | Aug 10, 2022 | A vulnerability in the handling of RSA keys on devices running Cisco Adaptive Security Appliance (ASA) Software and Cisc... |
| CVE-2022-20713 | MEDIUM | 6.1 | 1.7% | Aug 10, 2022 | A vulnerability in the VPN web client services component of Cisco Adaptive Security Appliance (ASA) Software and Cisco F... |
| CVE-2022-38133 | MEDIUM | 5.3 | 0.4% | Aug 10, 2022 | In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some cases |
| CVE-2022-2756 | MEDIUM | 6.5 | 2.3% | Aug 10, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository kareadita/kavita prior to 0.5.4.1. |
| CVE-2022-0028 | HIGH | 8.6 | 2.0% | Aug 10, 2022 | A PAN-OS URL filtering policy misconfiguration could allow a network-based attacker to conduct reflected and amplified T... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now