2022 CVE Vulnerabilities

27,518 CVEs published in 2022.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2022-40310LOW3.1Authenticated (subscriber+) Race Condition vulnerability in Rate my Post – WP Rating System plugin <= 3.3.4 at WordPress...
CVE-2022-35252LOW3.7When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when l...
CVE-2022-39231LOW3.7Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. In versions prio...
CVE-2022-39225LOW3.1Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. In versions prio...
CVE-2022-3274LOW3.5Cross-Site Request Forgery (CSRF) in GitHub repository ikus060/rdiffweb prior to 2.4.7.
CVE-2022-36062LOW3.8Grafana is an open-source platform for monitoring and observability. In versions prior to 8.5.13, 9.0.9, and 9.1.6, Graf...
CVE-2022-31679LOW3.7Applications that allow HTTP PATCH access to resources exposed by Spring Data REST in versions 3.6.0 - 3.5.5, 3.7.0 - 3....
CVE-2022-32872LOW2.4A logic issue was addressed with improved restrictions. This issue is fixed in iOS 16, iOS 15.7 and iPadOS 15.7. A perso...
CVE-2022-37703LOW3.3In Amanda 3.5.1, an information leak vulnerability was found in the calcsize SUID binary. An attacker can abuse this vul...
CVE-2022-31224LOW2.4Dell BIOS versions contain an Improper Protection Against Voltage and Clock Glitches vulnerability. An attacker with phy...
CVE-2022-31223LOW2.3Dell BIOS versions contain an Improper Neutralization of Null Byte vulnerability. A local authenticated administrator us...
CVE-2022-31221LOW2.3Dell BIOS versions contain an Information Exposure vulnerability. A local authenticated administrator user could potenti...
CVE-2022-38701LOW3.3OpenHarmony-v3.1.2 and prior versions have a heap overflow vulnerability. Local attackers can trigger a heap overflow an...
CVE-2022-36878LOW3.3Exposure of Sensitive Information in Find My Mobile prior to version 7.2.25.14 allows local attacker to access IMEI via ...
CVE-2022-36877LOW3.3Exposure of Sensitive Information in FaqSymptomCardViewModel in Samsung Members prior to versions 4.3.00.11 in Global an...
CVE-2022-36876LOW2.4Improper authorization in UPI payment in Samsung Pass prior to version 4.0.04.10 allows physical attackers to access acc...
CVE-2022-36866LOW3.3Improper access control vulnerability in Broadcaster in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0...
CVE-2022-36865LOW3.3Improper access control in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(11) and be...
CVE-2022-36857LOW2.4Improper Authorization vulnerability in Photo Editor prior to SMR Sep-2022 Release 1 allows physical attackers to read i...
CVE-2022-36856LOW3.3Improper access control vulnerability in Telecom application prior to SMR Sep-2022 Release 1 allows attacker to start em...
CVE-2022-36852LOW3.3Improper Authorization vulnerability in Video Editor prior to SMR Sep-2022 Release 1 allows local attacker to access int...
CVE-2022-36422LOW3.1Rating increase/decrease via race condition in Lester 'GaMerZ' Chan WP-PostRatings plugin <= 1.89 at WordPress.
CVE-2022-22314LOW3.3IBM Planning Analytics Local 2.0 allows web pages to be stored locally which can be read by another user on the system. ...
CVE-2022-35931LOW2.7Nextcloud Password Policy is an app that enables a Nextcloud server admin to define certain rules for passwords. Prior t...
CVE-2022-2945LOW2.7The WordPress Infinite Scroll – Ajax Load More plugin for WordPress is vulnerable to Directory Traversal in versions up ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now