2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-20133 | HIGH | 7.8 | 0.1% | Jun 15, 2022 | In setDiscoverableTimeout of AdapterService.java, there is a possible bypass of user interaction due to a missing permis... |
| CVE-2022-20132 | MEDIUM | 4.6 | 0.2% | Jun 15, 2022 | In lg_probe and related functions of hid-lg.c and other USB HID files, there is a possible out of bounds read due to imp... |
| CVE-2022-20131 | HIGH | 7.5 | 0.8% | Jun 15, 2022 | In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This... |
| CVE-2022-20130 | CRITICAL | 9.8 | 8.3% | Jun 15, 2022 | In transportDec_OutOfBandConfig of tpdec_lib.cpp, there is a possible out of bounds write due to a heap buffer overflow.... |
| CVE-2022-20129 | MEDIUM | 5.5 | 0.1% | Jun 15, 2022 | In registerPhoneAccount of PhoneAccountRegistrar.java, there is a possible way to prevent the user from selecting a phon... |
| CVE-2022-20127 | CRITICAL | 9.8 | 6.6% | Jun 15, 2022 | In ce_t4t_data_cback of ce_t4t.cc, there is a possible out of bounds write due to a double free. This could lead to remo... |
| CVE-2022-20126 | HIGH | 7.3 | 0.2% | Jun 15, 2022 | In setScanMode of AdapterService.java, there is a possible way to enable Bluetooth discovery mode without user interacti... |
| CVE-2022-20125 | MEDIUM | 6.8 | 0.1% | Jun 15, 2022 | In GBoard, there is a possible way to bypass factory reset protections due to a sandbox escape. This could lead to local... |
| CVE-2022-20124 | HIGH | 7.8 | 0.2% | Jun 15, 2022 | In deletePackageX of DeletePackageHelper.java, there is a possible way for a Guest user to reset pre-loaded applications... |
| CVE-2022-20123 | HIGH | 7.5 | 0.8% | Jun 15, 2022 | In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds read due to a missing bounds check... |
| CVE-2022-1958 | MEDIUM | 6.5 | 0.7% | Jun 15, 2022 | A vulnerability classified as critical has been found in FileCloud. Affected is an unknown function of the component NTF... |
| CVE-2022-32243 | MEDIUM | 5.5 | 0.5% | Jun 14, 2022 | When a user opens manipulated Scalable Vector Graphics (.svg, svg.x3d) files received from untrusted sources in SAP 3D V... |
| CVE-2022-32242 | MEDIUM | 5.5 | 0.6% | Jun 14, 2022 | When a user opens manipulated Radiance Picture (.hdr, hdr.x3d) files received from untrusted sources in SAP 3D Visual En... |
| CVE-2022-32241 | MEDIUM | 5.5 | 0.5% | Jun 14, 2022 | When a user opens manipulated Portable Document Format (.pdf, PDFView.x3d) files received from untrusted sources in SAP ... |
| CVE-2022-32240 | MEDIUM | 5.5 | 0.5% | Jun 14, 2022 | When a user opens manipulated Jupiter Tesselation (.jt, JTReader.x3d) files received from untrusted sources in SAP 3D Vi... |
| CVE-2022-32230 | HIGH | 7.5 | 7.0% | Jun 14, 2022 | Microsoft Windows SMBv3 suffers from a null pointer dereference in versions of Windows prior to the April, 2022 patch se... |
| CVE-2022-31066 | MEDIUM | 4.4 | 0.3% | Jun 14, 2022 | EdgeX Foundry is an open source project for building a common open framework for Internet of Things edge computing. Prio... |
| CVE-2022-32363 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/view_category.php?id=. |
| CVE-2022-32362 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/manage_category.php?id=. |
| CVE-2022-32359 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/classes/Master.php?f=delete_category. |
| CVE-2022-32358 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/classes/Master.php?f=delete_inquiry. |
| CVE-2022-32355 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=products/view_product&id=. |
| CVE-2022-32354 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=user/manage_user&id=. |
| CVE-2022-32353 | HIGH | 7.2 | 1.0% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/manage_field_order.php?id=. |
| CVE-2022-31060 | MEDIUM | 5.3 | 1.0% | Jun 14, 2022 | Discourse is an open-source discussion platform. Prior to version 2.8.4 in the `stable` branch and version `2.9.0.beta5`... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now