2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4920 | CRITICAL | 9.6 | 0.6% | Jul 29, 2023 | Heap buffer overflow in Blink in Google Chrome prior to 101.0.4951.41 allowed a remote attacker who convinced a user to ... |
| CVE-2022-46898 | CRITICAL | 9.8 | 0.7% | Jul 25, 2023 | An issue was discovered in Vocera Report Server and Voice Server 5.x through 5.8. There is Path Traversal via the "resto... |
| CVE-2022-4146 | CRITICAL | 9.8 | 0.5% | Jul 18, 2023 | Expression Language Injection vulnerability in Hitachi Replication Manager on Windows, Linux, Solaris allows Code Inject... |
| CVE-2022-48513 | CRITICAL | 9.8 | 0.4% | Jul 6, 2023 | Vulnerability of identity verification being bypassed in the Gallery module. Successful exploitation of this vulnerabili... |
| CVE-2022-48512 | CRITICAL | 9.8 | 0.4% | Jul 6, 2023 | Use After Free (UAF) vulnerability in the Vdecoderservice service. Successful exploitation of this vulnerability may cau... |
| CVE-2022-48511 | CRITICAL | 9.8 | 0.4% | Jul 6, 2023 | Use After Free (UAF) vulnerability in the audio PCM driver module under special conditions. Successful exploitation of t... |
| CVE-2022-48510 | CRITICAL | 9.8 | 0.4% | Jul 6, 2023 | Input verification vulnerability in the AMS module. Successful exploitation of this vulnerability will cause unauthorize... |
| CVE-2022-46080 | CRITICAL | 9.8 | 2.3% | Jul 6, 2023 | Nexxt Nebula 1200-AC 15.03.06.60 allows authentication bypass and command execution by using the HTTPD service to enable... |
| CVE-2022-44720 | CRITICAL | 9.8 | 2.2% | Jun 29, 2023 | An issue was discovered in Weblib Ucopia before 6.0.13. OS Command Injection injection can occur, related to chroot. |
| CVE-2022-44276 | CRITICAL | 9.8 | 1.9% | Jun 28, 2023 | In Responsive Filemanager < 9.12.0, an attacker can bypass upload restrictions resulting in RCE. |
| CVE-2022-48336 | CRITICAL | 9.8 | 1.1% | Jun 26, 2023 | Widevine Trusted Application (TA) 5.0.0 through 7.1.1 has a PRDiagParseAndStoreData integer overflow and resultant buffe... |
| CVE-2022-48335 | CRITICAL | 9.8 | 1.1% | Jun 26, 2023 | Widevine Trusted Application (TA) 5.0.0 through 7.1.1 has a PRDiagVerifyProvisioning integer overflow and resultant buff... |
| CVE-2022-48334 | CRITICAL | 9.8 | 0.9% | Jun 26, 2023 | Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_verify_keys total_len+file_name_len integer overflow and... |
| CVE-2022-48333 | CRITICAL | 9.8 | 0.9% | Jun 26, 2023 | Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_verify_keys prefix_len+feature_name_len integer overflow... |
| CVE-2022-48332 | CRITICAL | 9.8 | 0.9% | Jun 26, 2023 | Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_save_keys file_name_len integer overflow and resultant b... |
| CVE-2022-48331 | CRITICAL | 9.8 | 0.9% | Jun 26, 2023 | Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_save_keys feature_name_len integer overflow and resultan... |
| CVE-2022-22630 | CRITICAL | 9.8 | 1.4% | Jun 23, 2023 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.6.6, macOS... |
| CVE-2022-47586 | CRITICAL | 9.8 | 0.7% | Jun 19, 2023 | Unauth. SQL Injection (SQLi) vulnerability in Themefic Ultimate Addons for Contact Form 7 plugin <= 3.1.23 versions. |
| CVE-2022-48472 | CRITICAL | 9.8 | 1.1% | Jun 16, 2023 | A Huawei printer has a system command injection vulnerability. Successful exploitation could lead to remote code executi... |
| CVE-2022-28550 | CRITICAL | 9.8 | 1.0% | Jun 13, 2023 | Matthias-Wandel/jhead jhead 3.06 is vulnerable to Buffer Overflow via shellescape(), jhead.c, jhead. jhead copies string... |
| CVE-2022-45938 | CRITICAL | 9 | 46.1% | Jun 2, 2023 | An issue was discovered in Comcast Defined Technologies microeisbss through 2021. An attacker can inject a stored XSS pa... |
| CVE-2022-4333 | CRITICAL | 9.8 | 0.9% | Jun 1, 2023 | Hardcoded Credentials in multiple SPRECON-E CPU variants of Sprecher Automation allows an remote attacker to take over t... |
| CVE-2022-35744 | CRITICAL | 9.8 | 2.0% | May 31, 2023 | Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability |
| CVE-2022-47526 | CRITICAL | 9.8 | 1.3% | May 31, 2023 | Fox-IT DataDiode (aka Fox DataDiode) 3.4.3 suffers from a path traversal vulnerability with resultant arbitrary writing ... |
| CVE-2022-36247 | CRITICAL | 9.1 | 0.5% | May 30, 2023 | Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to IDOR via controlpanel.shopbeat... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now