2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-4745HIGH7.1The WP Customer Area WordPress plugin before 8.1.4 does not have CSRF checks when performing some actions such as chmod,...
CVE-2022-4546HIGH7.2The Mapwiz WordPress plugin through 1.0.1 does not properly sanitise and escape a parameter before using it in a SQL sta...
CVE-2022-45725HIGH8.8Improper Input Validation in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same network to execute ar...
CVE-2022-45455HIGH7.8Local privilege escalation due to incomplete uninstallation cleanup. The following products are affected: Acronis Cyber ...
CVE-2022-45454HIGH7.5Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Agent ...
CVE-2022-43460HIGH7.5Driver Distributor v2.2.3.1 and earlier contains a vulnerability where passwords are stored in a recoverable format. If ...
CVE-2022-47361HIGH7.8In firewall service, there is a missing permission check. This could lead to local escalation of privilege with system e...
CVE-2022-45090HIGH8.8Improper Input Validation vulnerability in Group Arge Energy and Control Systems Smartpower Web allows SQL Injection. T...
CVE-2022-45089HIGH8.8Improper Input Validation vulnerability in Group Arge Energy and Control Systems Smartpower Web allows SQL Injection. T...
CVE-2022-43779HIGH7A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI ...
CVE-2022-42292HIGH7.8 NVIDIA GeForce Experience contains a vulnerability in the NVContainer component, where a user without administrator pri...
CVE-2022-40513HIGH7.5Transient DOS due to uncontrolled resource consumption in WLAN firmware when peer is freed in non qos state.
CVE-2022-40512HIGH7.5Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
CVE-2022-40502HIGH7.5Transient DOS due to improper input validation in WLAN Host.
CVE-2022-38396HIGH7.8HP Factory Preinstalled Images on certain systems that shipped with Windows 10 versions 20H2 and earlier OS versions mig...
CVE-2022-34146HIGH7.5Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation.
CVE-2022-34145HIGH7.5Transient DOS due to buffer over-read in WLAN Host while parsing frame information.
CVE-2022-33306HIGH7.5Transient DOS due to buffer over-read in WLAN while processing an incoming management frame with incorrectly filled IEs.
CVE-2022-33280HIGH8.8Memory corruption due to access of uninitialized pointer in Bluetooth HOST while processing the AVRCP packet.
CVE-2022-33277HIGH7.8Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.
CVE-2022-33271HIGH7.5Information disclosure due to buffer over-read in WLAN while parsing NMF frame.
CVE-2022-33248HIGH7.8Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi...
CVE-2022-33246HIGH7.8Memory corruption in Audio due to use of out-of-range pointer offset while Initiating a voice call session from user spa...
CVE-2022-33243HIGH7.8Memory corruption due to improper access control in Qualcomm IPC.
CVE-2022-33233HIGH7.8Memory corruption due to configuration weakness in modem wile sending command to write protected files.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now