2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-20133HIGH7.8In setDiscoverableTimeout of AdapterService.java, there is a possible bypass of user interaction due to a missing permis...
CVE-2022-20132MEDIUM4.6In lg_probe and related functions of hid-lg.c and other USB HID files, there is a possible out of bounds read due to imp...
CVE-2022-20131HIGH7.5In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This...
CVE-2022-20130CRITICAL9.8In transportDec_OutOfBandConfig of tpdec_lib.cpp, there is a possible out of bounds write due to a heap buffer overflow....
CVE-2022-20129MEDIUM5.5In registerPhoneAccount of PhoneAccountRegistrar.java, there is a possible way to prevent the user from selecting a phon...
CVE-2022-20127CRITICAL9.8In ce_t4t_data_cback of ce_t4t.cc, there is a possible out of bounds write due to a double free. This could lead to remo...
CVE-2022-20126HIGH7.3In setScanMode of AdapterService.java, there is a possible way to enable Bluetooth discovery mode without user interacti...
CVE-2022-20125MEDIUM6.8In GBoard, there is a possible way to bypass factory reset protections due to a sandbox escape. This could lead to local...
CVE-2022-20124HIGH7.8In deletePackageX of DeletePackageHelper.java, there is a possible way for a Guest user to reset pre-loaded applications...
CVE-2022-20123HIGH7.5In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds read due to a missing bounds check...
CVE-2022-1958MEDIUM6.5A vulnerability classified as critical has been found in FileCloud. Affected is an unknown function of the component NTF...
CVE-2022-32243MEDIUM5.5When a user opens manipulated Scalable Vector Graphics (.svg, svg.x3d) files received from untrusted sources in SAP 3D V...
CVE-2022-32242MEDIUM5.5When a user opens manipulated Radiance Picture (.hdr, hdr.x3d) files received from untrusted sources in SAP 3D Visual En...
CVE-2022-32241MEDIUM5.5When a user opens manipulated Portable Document Format (.pdf, PDFView.x3d) files received from untrusted sources in SAP ...
CVE-2022-32240MEDIUM5.5When a user opens manipulated Jupiter Tesselation (.jt, JTReader.x3d) files received from untrusted sources in SAP 3D Vi...
CVE-2022-32230HIGH7.5Microsoft Windows SMBv3 suffers from a null pointer dereference in versions of Windows prior to the April, 2022 patch se...
CVE-2022-31066MEDIUM4.4EdgeX Foundry is an open source project for building a common open framework for Internet of Things edge computing. Prio...
CVE-2022-32363HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/view_category.php?id=.
CVE-2022-32362HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/manage_category.php?id=.
CVE-2022-32359HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/classes/Master.php?f=delete_category.
CVE-2022-32358HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/classes/Master.php?f=delete_inquiry.
CVE-2022-32355HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=products/view_product&id=.
CVE-2022-32354HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=user/manage_user&id=.
CVE-2022-32353HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/manage_field_order.php?id=.
CVE-2022-31060MEDIUM5.3Discourse is an open-source discussion platform. Prior to version 2.8.4 in the `stable` branch and version `2.9.0.beta5`...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now