2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-47150 | MEDIUM | 4.3 | 0.1% | Jun 11, 2026 | Cross-Site request forgery (CSRF) vulnerability in weDevs WooCommerce Conversion Tracking allows Cross Site Request Forg... |
| CVE-2022-45813 | MEDIUM | 5.4 | 0.2% | Jun 11, 2026 | Missing Authorization vulnerability in BeRocket Advanced AJAX Product Filters allows Exploiting Incorrectly Configured A... |
| CVE-2022-44630 | MEDIUM | 4.6 | 0.1% | Jun 11, 2026 | Cross-Site request forgery (CSRF) vulnerability in YITH YITH WooCommerce Product Slider Carousel allows Cross Site Reque... |
| CVE-2022-42479 | MEDIUM | 5.4 | 0.2% | Jun 11, 2026 | Missing Authorization vulnerability in TemplateHouse Soledad allows Accessing Functionality Not Properly Constrained by ... |
| CVE-2022-50953 | MEDIUM | 6.9 | 0.3% | Jun 8, 2026 | WordPress Plugin admin-word-count-column 2.2 contains a local file read vulnerability that allows unauthenticated attack... |
| CVE-2022-31114 | MEDIUM | 5.1 | 0.3% | Jun 3, 2026 | backpack/crud provides Create, Read, Update & Delete (CRUD) functions for Backpack, a collection of Laravel packages tha... |
| CVE-2022-41656 | MEDIUM | 4.3 | 0.2% | May 27, 2026 | Missing Authorization vulnerability in Bizswoop Account Manager for WooCommerce allows Exploiting Incorrectly Configured... |
| CVE-2022-50970 | MEDIUM | 5.4 | 0.2% | May 10, 2026 | WordPress Plugin AAWP 3.16 contains a reflected cross-site scripting vulnerability that allows authenticated attackers t... |
| CVE-2022-50969 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the backend/mailingLog/manage module. The d... |
| CVE-2022-50968 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the auctions/manage module. The date_create... |
| CVE-2022-50967 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the tickets/manage module. The date_created... |
| CVE-2022-50966 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the news/manage module. The date_created, d... |
| CVE-2022-50965 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the posts/manage module. The date_created, ... |
| CVE-2022-50964 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the auctions/myAuctions/status/loose module... |
| CVE-2022-50963 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the auctions/myAuctions/status/active modul... |
| CVE-2022-50962 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the orders/myOrders module. The date_create... |
| CVE-2022-50961 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress Plugin IP2Location Country Blocker 2.26.7 contains a stored cross-site scripting vulnerability that allows aut... |
| CVE-2022-50960 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | WordPress International SMS for Contact Form 7 Integration version 1.2 contains a reflected cross-site scripting vulnera... |
| CVE-2022-50959 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | WordPress Contact Form Builder 1.6.1 contains a reflected cross-site scripting vulnerability that allows unauthenticated... |
| CVE-2022-50958 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | WordPress Plugin Jetpack 9.1 contains a reflected cross-site scripting vulnerability that allows unauthenticated attacke... |
| CVE-2022-50957 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | Drupal avatar_uploader 7.x-1.0-beta8 contains a reflected cross-site scripting vulnerability that allows unauthenticated... |
| CVE-2022-50956 | MEDIUM | 6.9 | 0.2% | May 10, 2026 | WordPress Plugin amministrazione-aperta 3.7.3 contains a local file read vulnerability that allows unauthenticated attac... |
| CVE-2022-50955 | MEDIUM | 5.3 | 0.1% | May 10, 2026 | WordPress Plugin Curtain 1.0.2 contains a cross-site request forgery vulnerability that allows attackers to activate or ... |
| CVE-2022-50954 | MEDIUM | 6.9 | 0.4% | May 10, 2026 | WordPress Plugin cab-fare-calculator 1.0.3 contains a local file inclusion vulnerability that allows unauthenticated att... |
| CVE-2022-50949 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress Plugin Videos sync PDF 1.7.4 contains a stored cross-site scripting vulnerability that allows authenticated at... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now