2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-50997 | HIGH | 7.5 | — | Aug 11, 2026 | Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerability in the HrmCareerApplyPerView.jsp endpoint th... |
| CVE-2022-50974 | — | — | — | Aug 11, 2026 | Rejected reason: This CVE ID has been rejected. |
| CVE-2022-4995 | CRITICAL | 9.8 | — | Aug 7, 2026 | Weaver (Fanwei) E-cology 9.0 versions prior to 10.52 contain a file upload vulnerability that allows a remote, unauthent... |
| CVE-2022-4994 | — | — | — | Jul 30, 2026 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: wean fast IN from emulator_pio_in Use __... |
| CVE-2022-4990 | HIGH | 7.3 | 0.1% | Jul 3, 2026 | ** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows ... |
| CVE-2022-4989 | HIGH | 8.5 | 0.1% | Jul 3, 2026 | ** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows ... |
| CVE-2022-50973 | CRITICAL | 9.8 | — | Jul 2, 2026 | Yonyou KSOA 9.0 contains an unauthenticated arbitrary file upload vulnerability in the com.sksoft.bill.ImageUpload servl... |
| CVE-2022-50972 | CRITICAL | 9.8 | 0.6% | Jun 20, 2026 | WooCommerce 7.1.0 contains a remote code execution vulnerability that allows attackers to execute arbitrary PHP code by ... |
| CVE-2022-50971 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Malwarebytes 4.5 contains an unquoted service path vulnerability in the MBAMService executable that allows local attacke... |
| CVE-2022-47150 | MEDIUM | 4.3 | 0.1% | Jun 11, 2026 | Cross-Site request forgery (CSRF) vulnerability in weDevs WooCommerce Conversion Tracking allows Cross Site Request Forg... |
| CVE-2022-45813 | MEDIUM | 5.4 | 0.2% | Jun 11, 2026 | Missing Authorization vulnerability in BeRocket Advanced AJAX Product Filters allows Exploiting Incorrectly Configured A... |
| CVE-2022-44630 | MEDIUM | 4.6 | 0.1% | Jun 11, 2026 | Cross-Site request forgery (CSRF) vulnerability in YITH YITH WooCommerce Product Slider Carousel allows Cross Site Reque... |
| CVE-2022-42479 | MEDIUM | 5.4 | 0.2% | Jun 11, 2026 | Missing Authorization vulnerability in TemplateHouse Soledad allows Accessing Functionality Not Properly Constrained by ... |
| CVE-2022-48575 | LOW | 3.5 | 0.2% | Jun 10, 2026 | A person with access to a Mac may be able to bypass Login Window. A consistency issue was addressed with improved state ... |
| CVE-2022-26758 | HIGH | 7.1 | 0.1% | Jun 10, 2026 | A malicious application may cause unexpected changes in memory shared between processes. A memory corruption issue was a... |
| CVE-2022-50953 | MEDIUM | 6.9 | 0.3% | Jun 8, 2026 | WordPress Plugin admin-word-count-column 2.2 contains a local file read vulnerability that allows unauthenticated attack... |
| CVE-2022-31114 | MEDIUM | 5.1 | 0.3% | Jun 3, 2026 | backpack/crud provides Create, Read, Update & Delete (CRUD) functions for Backpack, a collection of Laravel packages tha... |
| CVE-2022-49042 | HIGH | 7.8 | 0.1% | Jun 3, 2026 | An inclusion of functionality from untrusted control sphere vulnerability in MinGW DLL component in Synology Hyper Backu... |
| CVE-2022-49036 | HIGH | 7.8 | 0.1% | Jun 3, 2026 | An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Ba... |
| CVE-2022-4992 | HIGH | 8.8 | 0.2% | Jun 2, 2026 | Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors versions VG4.1.1, VG4.0.3, and lower (wi... |
| CVE-2022-4991 | HIGH | 7.4 | 0.3% | Jun 1, 2026 | Tychon includes an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory that may be controllable by... |
| CVE-2022-41656 | MEDIUM | 4.3 | 0.2% | May 27, 2026 | Missing Authorization vulnerability in Bizswoop Account Manager for WooCommerce allows Exploiting Incorrectly Configured... |
| CVE-2022-34363 | HIGH | 7.5 | 0.2% | May 22, 2026 | Dell Unisphere for PowerMax vApp version prior to 10.0.0.2, contains an authorization bypass vulnerability in the Unisp... |
| CVE-2022-31231 | HIGH | 7.5 | 0.3% | May 22, 2026 | Dell ECS, versions 3.5 and 3.6, contain an Improper Access Control in the Identity and Access Management (IAM) module. A... |
| CVE-2022-23826 | LOW | 1.8 | 0.1% | May 15, 2026 | A TOCTOU (Time-Of-Check to Time-Of-Use) in the graphics interface may allow an attacker to load registers repeatedly cre... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now