2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-28784 | LOW | 3.3 | 0.1% | May 3, 2022 | Path traversal vulnerability in Galaxy Themes prior to SMR May-2022 Release 1 allows attackers to list file names in arb... |
| CVE-2022-28783 | HIGH | 7.1 | 0.1% | May 3, 2022 | Improper validation of removing package name in Galaxy Themes prior to SMR May-2022 Release 1 allows attackers to uninst... |
| CVE-2022-28782 | MEDIUM | 4.6 | 0.1% | May 3, 2022 | Improper access control vulnerability in Contents To Window prior to SMR May-2022 Release 1 allows physical attacker to ... |
| CVE-2022-28781 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | Improper input validation in Settings prior to SMR-May-2022 Release 1 allows attackers to launch arbitrary activity with... |
| CVE-2022-28780 | MEDIUM | 5.5 | 0.1% | May 3, 2022 | Improper access control vulnerability in Weather prior to SMR May-2022 Release 1 allows that attackers can access locati... |
| CVE-2022-27330 | MEDIUM | 5.4 | 0.5% | May 3, 2022 | A cross-site scripting (XSS) vulnerability in /public/admin/index.php?add_product of E-Commerce Website v1.0 allows atta... |
| CVE-2022-27313 | HIGH | 7.5 | 0.9% | May 3, 2022 | An arbitrary file deletion vulnerability in Gitea v1.16.3 allows attackers to cause a Denial of Service (DoS) via deleti... |
| CVE-2022-20110 | HIGH | 7 | 0.1% | May 3, 2022 | In ion, there is a possible use after free due to a race condition. This could lead to local escalation of privilege wit... |
| CVE-2022-20109 | HIGH | 7.8 | 0.1% | May 3, 2022 | In ion, there is a possible use after free due to improper update of reference count. This could lead to local escalatio... |
| CVE-2022-20100 | MEDIUM | 4.4 | 0.1% | May 3, 2022 | In aee daemon, there is a possible information disclosure due to a missing permission check. This could lead to local in... |
| CVE-2022-20099 | HIGH | 7.8 | 0.1% | May 3, 2022 | In aee daemon, there is a possible out of bounds write due to improper input validation. This could lead to local escala... |
| CVE-2022-20098 | MEDIUM | 4.4 | 0.1% | May 3, 2022 | In aee daemon, there is a possible information disclosure due to a missing permission check. This could lead to local in... |
| CVE-2022-20097 | MEDIUM | 4.7 | 0.1% | May 3, 2022 | In aee daemon, there is a possible information disclosure due to a race condition. This could lead to local information ... |
| CVE-2022-20096 | MEDIUM | 4.4 | 0.1% | May 3, 2022 | In camera, there is a possible information disclosure due to uninitialized data. This could lead to local information di... |
| CVE-2022-20095 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | In imgsensor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation... |
| CVE-2022-20094 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | In imgsensor, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalat... |
| CVE-2022-20093 | HIGH | 7.8 | 0.1% | May 3, 2022 | In telephony, there is a possible way to disable receiving SMS messages due to a missing permission check. This could le... |
| CVE-2022-20092 | MEDIUM | 5.5 | 0.1% | May 3, 2022 | In alac decoder, there is a possible out of bounds read due to a missing bounds check. This could lead to local informat... |
| CVE-2022-20091 | MEDIUM | 6.4 | 0.1% | May 3, 2022 | In aee driver, there is a possible use after free due to a race condition. This could lead to local escalation of privil... |
| CVE-2022-20090 | MEDIUM | 6.4 | 0.1% | May 3, 2022 | In aee driver, there is a possible use after free due to a race condition. This could lead to local escalation of privil... |
| CVE-2022-20089 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | In aee driver, there is a possible memory corruption due to active debug code. This could lead to local escalation of pr... |
| CVE-2022-20088 | HIGH | 7.8 | 0.1% | May 3, 2022 | In aee driver, there is a possible reference count mistake due to incorrect error handling. This could lead to local esc... |
| CVE-2022-20087 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | In ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr... |
| CVE-2022-20085 | MEDIUM | 6.7 | 0.1% | May 3, 2022 | In netdiag, there is a possible symbolic link following due to an improper link resolution. This could lead to local esc... |
| CVE-2022-20084 | HIGH | 7.8 | 0.1% | May 3, 2022 | In telephony, there is a possible way to disable receiving emergency broadcasts due to a missing permission check. This ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now