2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26314 | CRITICAL | 9.8 | 1.4% | Mar 8, 2022 | A vulnerability has been identified in Mendix Forgot Password Appstore module (All versions >= V3.3.0 < V3.5.1), Mendix ... |
| CVE-2022-26313 | CRITICAL | 9.8 | 0.9% | Mar 8, 2022 | A vulnerability has been identified in Mendix Forgot Password Appstore module (All versions >= V3.3.0 < V3.5.1). In cert... |
| CVE-2022-25311 | HIGH | 7.3 | 0.5% | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SIN... |
| CVE-2022-24661 | HIGH | 7.8 | 0.8% | Mar 8, 2022 | A vulnerability has been identified in Simcenter STAR-CCM+ Viewer (All versions < V2022.1). The starview+.exe contains a... |
| CVE-2022-24408 | HIGH | 7.8 | 0.2% | Mar 8, 2022 | A vulnerability has been identified in SINUMERIK MC (All versions < V1.15 SP1), SINUMERIK ONE (All versions < V6.15 SP1)... |
| CVE-2022-24309 | HIGH | 8.1 | 0.6% | Mar 8, 2022 | A vulnerability has been identified in Mendix Runtime V7 (All versions < V7.23.29), Mendix Runtime V8 (All versions < V8... |
| CVE-2022-24282 | HIGH | 7.2 | 1.3% | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SIN... |
| CVE-2022-24281 | HIGH | 7.2 | 3.4% | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). A privileged... |
| CVE-2022-24737 | MEDIUM | 6.5 | 1.6% | Mar 7, 2022 | HTTPie is a command-line HTTP client. HTTPie has the practical concept of sessions, which help users to persistently sto... |
| CVE-2022-24738 | HIGH | 7.4 | 1.0% | Mar 7, 2022 | Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. In versions of evmos prior to 2.0.1 attackers are... |
| CVE-2022-22351 | HIGH | 8.6 | 1.1% | Mar 7, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged trusted host user to exploit a vulnerability in the nim... |
| CVE-2022-0756 | MEDIUM | 6.5 | 0.6% | Mar 7, 2022 | Missing Authorization in GitHub repository salesagility/suitecrm prior to 7.12.5. |
| CVE-2022-0755 | MEDIUM | 4.3 | 0.7% | Mar 7, 2022 | Missing Authorization in GitHub repository salesagility/suitecrm prior to 7.12.5. |
| CVE-2022-0754 | MEDIUM | 6.5 | 0.8% | Mar 7, 2022 | SQL Injection in GitHub repository salesagility/suitecrm prior to 7.12.5. |
| CVE-2022-0535 | MEDIUM | 4.8 | 1.3% | Mar 7, 2022 | The E2Pdf WordPress plugin before 1.16.45 does not sanitise and escape some of its settings, which could allow high priv... |
| CVE-2022-0533 | MEDIUM | 6.1 | 1.9% | Mar 7, 2022 | The Ditty (formerly Ditty News Ticker) WordPress plugin before 3.0.15 is affected by a Reflected Cross-Site Scripting (X... |
| CVE-2022-0448 | MEDIUM | 4.8 | 5.8% | Mar 7, 2022 | The CP Blocks WordPress plugin before 1.0.15 does not sanitise and escape its "License ID" settings, which could allow h... |
| CVE-2022-0445 | MEDIUM | 6.5 | 0.5% | Mar 7, 2022 | The WordPress Real Cookie Banner: GDPR (DSGVO) & ePrivacy Cookie Consent WordPress plugin before 2.14.2 does not have CS... |
| CVE-2022-0442 | MEDIUM | 4.3 | 0.6% | Mar 7, 2022 | The UsersWP WordPress plugin before 1.2.3.1 is missing access controls when updating a user avatar, and does not make su... |
| CVE-2022-0441 | CRITICAL | 9.8 | 85.3% | Mar 7, 2022 | The MasterStudy LMS WordPress plugin before 2.7.6 does to validate some parameters given when registering a new account,... |
| CVE-2022-0440 | HIGH | 7.2 | 1.4% | Mar 7, 2022 | The Catch Themes Demo Import WordPress plugin before 2.1.1 does not validate one of the file to be imported, which could... |
| CVE-2022-0439 | HIGH | 8.8 | 4.2% | Mar 7, 2022 | The Email Subscribers & Newsletters WordPress plugin before 5.3.2 does not correctly escape the `order` and `orderby` pa... |
| CVE-2022-0434 | CRITICAL | 9.8 | 14.8% | Mar 7, 2022 | The Page View Count WordPress plugin before 2.4.15 does not sanitise and escape the post_ids parameter before using it i... |
| CVE-2022-0429 | MEDIUM | 6.1 | 1.4% | Mar 7, 2022 | The WP Cerber Security, Anti-spam & Malware Scan WordPress plugin before 8.9.6 does not sanitise the $url variable befor... |
| CVE-2022-0426 | MEDIUM | 5.4 | 0.7% | Mar 7, 2022 | The Product Feed PRO for WooCommerce WordPress plugin before 11.2.3 does not escape the rowCount parameter before output... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now