2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-22083HIGH7.5Denial of service due to memory corruption while extracting ape header from clips in Snapdragon Auto, Snapdragon Compute...
CVE-2022-22082HIGH7.8Memory corruption due to possible buffer overflow while parsing DSF header with corrupted channel count in Snapdragon Au...
CVE-2022-22072HIGH7.8Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdrago...
CVE-2022-22071HIGH7.8Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in prog...
CVE-2022-22068HIGH7.8kernel event may contain unexpected content which is not generated by NPU software in asynchronous execution mode in Sna...
CVE-2022-22065HIGH7.5Out of bound read in WLAN HOST due to improper length check can lead to DOS in Snapdragon Auto, Snapdragon Compute, Snap...
CVE-2022-22064HIGH7.5Possible buffer over read due to lack of size validation while unpacking frame in Snapdragon Auto, Snapdragon Compute, S...
CVE-2022-22057HIGH7.8Use after free in graphics fence due to a race condition while closing fence file descriptor and destroy graphics timeli...
CVE-2022-2079MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository nocodb/nocodb prior to 0.91.7+.
CVE-2022-29925HIGH7.8Access of uninitialized pointer vulnerability exists in the simulator module contained in the graphic editor 'V-SFT' ver...
CVE-2022-29524HIGH7.8Out-of-bounds write vulnerability exists in V-Server v4.0.11.0 and earlier and V-Server Lite v4.0.13.0 and earlier, whic...
CVE-2022-29522HIGH7.8Use after free vulnerability exists in the simulator module contained in the graphic editor 'V-SFT' versions prior to v6...
CVE-2022-29509HIGH7.5Directory traversal vulnerability in T&D Data Server (Japanese Edition) Ver.2.22 and earlier, T&D Data Server (English E...
CVE-2022-29506HIGH7.8Out-of-bounds read vulnerability exist in the simulator module contained in the graphic editor 'V-SFT' v6.1.3.0 and earl...
CVE-2022-29485MEDIUM6.1Cross-site scripting vulnerability in SHIRASAGI v1.0.0 to v1.14.2, and v1.15.0 allows a remote attacker to inject an arb...
CVE-2022-29482LOW3.7'Mobaoku-Auction&Flea Market' App for iOS versions prior to 5.5.16 improperly verifies server certificates, which may al...
CVE-2022-27176HIGH7.8Incomplete filtering of special elements vulnerability exists in RevoWorks SCVX using 'File Sanitization Library' 1.043 ...
CVE-2022-26302HIGH7.8Heap-based buffer overflow exists in the simulator module contained in the graphic editor 'V-SFT' versions prior to v6.1...
CVE-2022-2077Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-2076Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-25167CRITICAL9.8Apache Flume versions 1.4.0 through 1.9.0 are vulnerable to a remote code execution (RCE) attack when a configuration us...
CVE-2022-31447HIGH7.5An XML external entity (XXE) injection vulnerability in Magicpin v3.4 allows attackers to access sensitive database info...
CVE-2022-31446CRITICAL9.8Tenda AC18 router V15.03.05.19 and V15.03.05.05 was discovered to contain a remote code execution (RCE) vulnerability vi...
CVE-2022-31415MEDIUM6.5Online Fire Reporting System v1.0 was discovered to contain a SQL injection vulnerability via the GET parameter in /repo...
CVE-2022-32565HIGH7.5An issue was discovered in Couchbase Server before 7.0.4. The Backup Service log leaks unredacted usernames and document...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now