2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-22083 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Denial of service due to memory corruption while extracting ape header from clips in Snapdragon Auto, Snapdragon Compute... |
| CVE-2022-22082 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Memory corruption due to possible buffer overflow while parsing DSF header with corrupted channel count in Snapdragon Au... |
| CVE-2022-22072 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdrago... |
| CVE-2022-22071 | HIGH | 7.8 | 0.4% | Jun 14, 2022 | Possible use after free when process shell memory is freed using IOCTL munmap call and process initialization is in prog... |
| CVE-2022-22068 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | kernel event may contain unexpected content which is not generated by NPU software in asynchronous execution mode in Sna... |
| CVE-2022-22065 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Out of bound read in WLAN HOST due to improper length check can lead to DOS in Snapdragon Auto, Snapdragon Compute, Snap... |
| CVE-2022-22064 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Possible buffer over read due to lack of size validation while unpacking frame in Snapdragon Auto, Snapdragon Compute, S... |
| CVE-2022-22057 | HIGH | 7.8 | 0.4% | Jun 14, 2022 | Use after free in graphics fence due to a race condition while closing fence file descriptor and destroy graphics timeli... |
| CVE-2022-2079 | MEDIUM | 5.4 | 0.7% | Jun 14, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository nocodb/nocodb prior to 0.91.7+. |
| CVE-2022-29925 | HIGH | 7.8 | 0.7% | Jun 14, 2022 | Access of uninitialized pointer vulnerability exists in the simulator module contained in the graphic editor 'V-SFT' ver... |
| CVE-2022-29524 | HIGH | 7.8 | 0.9% | Jun 14, 2022 | Out-of-bounds write vulnerability exists in V-Server v4.0.11.0 and earlier and V-Server Lite v4.0.13.0 and earlier, whic... |
| CVE-2022-29522 | HIGH | 7.8 | 0.7% | Jun 14, 2022 | Use after free vulnerability exists in the simulator module contained in the graphic editor 'V-SFT' versions prior to v6... |
| CVE-2022-29509 | HIGH | 7.5 | 3.2% | Jun 14, 2022 | Directory traversal vulnerability in T&D Data Server (Japanese Edition) Ver.2.22 and earlier, T&D Data Server (English E... |
| CVE-2022-29506 | HIGH | 7.8 | 0.9% | Jun 14, 2022 | Out-of-bounds read vulnerability exist in the simulator module contained in the graphic editor 'V-SFT' v6.1.3.0 and earl... |
| CVE-2022-29485 | MEDIUM | 6.1 | 1.0% | Jun 14, 2022 | Cross-site scripting vulnerability in SHIRASAGI v1.0.0 to v1.14.2, and v1.15.0 allows a remote attacker to inject an arb... |
| CVE-2022-29482 | LOW | 3.7 | 0.3% | Jun 14, 2022 | 'Mobaoku-Auction&Flea Market' App for iOS versions prior to 5.5.16 improperly verifies server certificates, which may al... |
| CVE-2022-27176 | HIGH | 7.8 | 0.6% | Jun 14, 2022 | Incomplete filtering of special elements vulnerability exists in RevoWorks SCVX using 'File Sanitization Library' 1.043 ... |
| CVE-2022-26302 | HIGH | 7.8 | 0.8% | Jun 14, 2022 | Heap-based buffer overflow exists in the simulator module contained in the graphic editor 'V-SFT' versions prior to v6.1... |
| CVE-2022-2077 | — | — | — | Jun 14, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2022-2076 | — | — | — | Jun 14, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2022-25167 | CRITICAL | 9.8 | 4.6% | Jun 14, 2022 | Apache Flume versions 1.4.0 through 1.9.0 are vulnerable to a remote code execution (RCE) attack when a configuration us... |
| CVE-2022-31447 | HIGH | 7.5 | 1.1% | Jun 14, 2022 | An XML external entity (XXE) injection vulnerability in Magicpin v3.4 allows attackers to access sensitive database info... |
| CVE-2022-31446 | CRITICAL | 9.8 | 32.1% | Jun 14, 2022 | Tenda AC18 router V15.03.05.19 and V15.03.05.05 was discovered to contain a remote code execution (RCE) vulnerability vi... |
| CVE-2022-31415 | MEDIUM | 6.5 | 0.9% | Jun 14, 2022 | Online Fire Reporting System v1.0 was discovered to contain a SQL injection vulnerability via the GET parameter in /repo... |
| CVE-2022-32565 | HIGH | 7.5 | 1.1% | Jun 13, 2022 | An issue was discovered in Couchbase Server before 7.0.4. The Backup Service log leaks unredacted usernames and document... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now