2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-27599 | MEDIUM | 4.4 | 0.2% | Sep 8, 2023 | An insertion of sensitive information into Log file vulnerability has been reported to affect product. If exploited, the... |
| CVE-2022-32920 | MEDIUM | 5.5 | 0.2% | Sep 6, 2023 | The issue was addressed with improved checks. This issue is fixed in Xcode 14.0. Parsing a file may lead to disclosure o... |
| CVE-2022-33220 | MEDIUM | 5.5 | 0.1% | Sep 5, 2023 | Information disclosure in Automotive multimedia due to buffer over-read. |
| CVE-2022-43903 | MEDIUM | 6.5 | 0.6% | Sep 5, 2023 | IBM Security Guardium 10.6, 11.3, and 11.4 could allow an authenticated user to cause a denial of service due to due to ... |
| CVE-2022-48453 | MEDIUM | 4.4 | 0.1% | Sep 4, 2023 | In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial... |
| CVE-2022-48452 | MEDIUM | 4.4 | 0.1% | Sep 4, 2023 | In Ifaa service, there is a possible missing permission check. This could lead to local denial of service with System ex... |
| CVE-2022-47353 | MEDIUM | 4.4 | 0.1% | Sep 4, 2023 | In vdsp device, there is a possible system crash due to improper input validation.This could lead to local denial of ser... |
| CVE-2022-47352 | MEDIUM | 4.4 | 0.1% | Sep 4, 2023 | In camera driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial ... |
| CVE-2022-3407 | MEDIUM | 4.3 | 0.2% | Sep 1, 2023 | I some cases, when the device is USB-tethered to a host PC, and the device is sharing its mobile network connection with... |
| CVE-2022-22305 | MEDIUM | 4.2 | 0.5% | Sep 1, 2023 | An improper certificate validation vulnerability [CWE-295] in FortiManager 7.0.1 and below, 6.4.6 and below; FortiAnalyz... |
| CVE-2022-4343 | MEDIUM | 4.3 | 0.4% | Sep 1, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.1.5, all versions startin... |
| CVE-2022-44349 | MEDIUM | 5.4 | 0.3% | Sep 1, 2023 | NAVBLUE S.A.S N-Ops & Crew 22.5-rc.50 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2022-1601 | MEDIUM | 5.3 | 0.6% | Aug 30, 2023 | The User Access Manager WordPress plugin before 2.2.18 prioritizes getting a visitor's IP from certain HTTP headers over... |
| CVE-2022-46783 | MEDIUM | 5.3 | 0.2% | Aug 28, 2023 | An issue was discovered in Stormshield SSL VPN Client before 3.2.0. If multiple address books are used, an attacker may ... |
| CVE-2022-43909 | MEDIUM | 5.4 | 0.3% | Aug 27, 2023 | IBM Security Guardium 11.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav... |
| CVE-2022-3746 | MEDIUM | 6.7 | 0.2% | Aug 23, 2023 | A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ... |
| CVE-2022-3745 | MEDIUM | 4.4 | 0.2% | Aug 23, 2023 | A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ... |
| CVE-2022-3744 | MEDIUM | 6.7 | 0.2% | Aug 23, 2023 | A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ... |
| CVE-2022-3743 | MEDIUM | 4.4 | 0.2% | Aug 23, 2023 | A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ... |
| CVE-2022-3742 | MEDIUM | 6.7 | 0.2% | Aug 23, 2023 | A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local ... |
| CVE-2022-48566 | MEDIUM | 5.9 | 1.1% | Aug 22, 2023 | An issue was discovered in compare_digest in Lib/hmac.py in Python through 3.9.1. Constant-time-defeating optimisations ... |
| CVE-2022-48564 | MEDIUM | 6.5 | 1.4% | Aug 22, 2023 | read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when... |
| CVE-2022-48554 | MEDIUM | 5.5 | 0.7% | Aug 22, 2023 | File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Sou... |
| CVE-2022-48547 | MEDIUM | 6.1 | 0.7% | Aug 22, 2023 | A reflected cross-site scripting (XSS) vulnerability in Cacti 0.8.7g and earlier allows unauthenticated remote attackers... |
| CVE-2022-48545 | MEDIUM | 5.5 | 0.2% | Aug 22, 2023 | An infinite recursion in Catalog::findDestInTree can cause denial of service for xpdf 4.02. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now