2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-26090LOW3.3Improper access control vulnerability in SamsungContacts prior to SMR Apr-2022 Release 1 allows that attackers can acces...
CVE-2022-25833LOW3.3Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEG...
CVE-2022-25832MEDIUM6.8Improper authentication vulnerability in S Secure prior to SMR Apr-2022 Release 1 allows physical attackers to use locke...
CVE-2022-25831MEDIUM4.6Improper access control vulnerability in S Secure prior to SMR Apr-2022 Release 1 allows physical attackers to access se...
CVE-2022-25796HIGH7.8A Double Free vulnerability allows remote malicious actors to execute arbitrary code on DWF file in Autodesk Navisworks ...
CVE-2022-25794HIGH7.8An Out-Of-Bounds Read Vulnerability in Autodesk FBX Review version 1.5.2 and prior may lead to code execution through ma...
CVE-2022-25792HIGH7.8A maliciously crafted DXF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to wr...
CVE-2022-25791HIGH7.8A Memory Corruption vulnerability for DWF and DWFX files in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Naviswo...
CVE-2022-25790HIGH7.8A maliciously crafted DWF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to wr...
CVE-2022-25789HIGH7.8A maliciously crafted DWF, 3DS and DWFX files in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to trigger use-afte...
CVE-2022-25615MEDIUM4.3Cross-Site Request Forgery (CSRF) in StylemixThemes eRoom – Zoom Meetings & Webinar (WordPress plugin) <= 1.3.8 allows c...
CVE-2022-25614MEDIUM4.3Cross-Site Request Forgery (CSRF) in StylemixThemes eRoom – Zoom Meetings & Webinar (WordPress plugin) <= 1.3.7 allows a...
CVE-2022-24829CRITICAL9.8Garden is an automation platform for Kubernetes development and testing. In versions prior to 0.12.39 multiple endpoints...
CVE-2022-24815HIGH8.1JHipster is a development platform to quickly generate, develop, & deploy modern web applications & microservice archite...
CVE-2022-24804MEDIUM5.3Discourse is an open source platform for community discussion. In stable versions prior to 2.8.3 and beta versions prior...
CVE-2022-22964HIGH7.8VMware Horizon Agent for Linux (prior to 22.x) contains a local privilege escalation that allows a user to escalate to r...
CVE-2022-22962HIGH7.8VMware Horizon Agent for Linux (prior to 22.x) contains a local privilege escalation as a user is able to change the def...
CVE-2022-22954CRITICAL9.8VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side templa...
CVE-2022-22572HIGH8.8A non-admin user with user management permission can escalate his privilege to admin user via password reset functionali...
CVE-2022-22571MEDIUM4.8An authenticated high privileged user can perform a stored XSS attack due to incorrect output encoding in Incapptic conn...
CVE-2022-22258CRITICAL9.8The Wi-Fi module has an event notification vulnerability.Successful exploitation of this vulnerability may allow third-p...
CVE-2022-22257HIGH7.5The customization framework has a vulnerability of improper permission control.Successful exploitation of this vulnerabi...
CVE-2022-22256HIGH7.5The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may affect data confide...
CVE-2022-22255HIGH7.5The application framework has a common DoS vulnerability.Successful exploitation of this vulnerability may affect the av...
CVE-2022-22254HIGH7.5A permission bypass vulnerability exists when the NFC CAs access the TEE.Successful exploitation of this vulnerability m...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now