2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-27599MEDIUM4.4An insertion of sensitive information into Log file vulnerability has been reported to affect product. If exploited, the...
CVE-2022-32920MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in Xcode 14.0. Parsing a file may lead to disclosure o...
CVE-2022-33220MEDIUM5.5Information disclosure in Automotive multimedia due to buffer over-read.
CVE-2022-43903MEDIUM6.5IBM Security Guardium 10.6, 11.3, and 11.4 could allow an authenticated user to cause a denial of service due to due to ...
CVE-2022-48453MEDIUM4.4In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial...
CVE-2022-48452MEDIUM4.4In Ifaa service, there is a possible missing permission check. This could lead to local denial of service with System ex...
CVE-2022-47353MEDIUM4.4In vdsp device, there is a possible system crash due to improper input validation.This could lead to local denial of ser...
CVE-2022-47352MEDIUM4.4In camera driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial ...
CVE-2022-3407MEDIUM4.3I some cases, when the device is USB-tethered to a host PC, and the device is sharing its mobile network connection with...
CVE-2022-22305MEDIUM4.2An improper certificate validation vulnerability [CWE-295] in FortiManager 7.0.1 and below, 6.4.6 and below; FortiAnalyz...
CVE-2022-4343MEDIUM4.3An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.1.5, all versions startin...
CVE-2022-44349MEDIUM5.4NAVBLUE S.A.S N-Ops & Crew 22.5-rc.50 is vulnerable to Cross Site Scripting (XSS).
CVE-2022-1601MEDIUM5.3The User Access Manager WordPress plugin before 2.2.18 prioritizes getting a visitor's IP from certain HTTP headers over...
CVE-2022-46783MEDIUM5.3An issue was discovered in Stormshield SSL VPN Client before 3.2.0. If multiple address books are used, an attacker may ...
CVE-2022-43909MEDIUM5.4IBM Security Guardium 11.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav...
CVE-2022-3746MEDIUM6.7A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ...
CVE-2022-3745MEDIUM4.4A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ...
CVE-2022-3744MEDIUM6.7A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ...
CVE-2022-3743MEDIUM4.4A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ...
CVE-2022-3742MEDIUM6.7A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ...
CVE-2022-48566MEDIUM5.9An issue was discovered in compare_digest in Lib/hmac.py in Python through 3.9.1. Constant-time-defeating optimisations ...
CVE-2022-48564MEDIUM6.5read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when...
CVE-2022-48554MEDIUM5.5File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Sou...
CVE-2022-48547MEDIUM6.1A reflected cross-site scripting (XSS) vulnerability in Cacti 0.8.7g and earlier allows unauthenticated remote attackers...
CVE-2022-48545MEDIUM5.5An infinite recursion in Catalog::findDestInTree can cause denial of service for xpdf 4.02.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now