2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-22564 | MEDIUM | 5.9 | 0.5% | Feb 14, 2023 | Dell EMC Unity versions before 5.2.0.0.5.173 , use(es) broken cryptographic algorithm. A remote unauthenticated attacker... |
| CVE-2022-4286 | MEDIUM | 6.1 | 0.6% | Feb 14, 2023 | A reflected cross-site scripting (XSS) vulnerability exists in System Diagnostics Manager of B&R Automation Runtime ver... |
| CVE-2022-35868 | MEDIUM | 6.7 | 0.2% | Feb 14, 2023 | A vulnerability has been identified in TIA Multiuser Server V14 (All versions), TIA Multiuser Server V15 (All versions <... |
| CVE-2022-3411 | MEDIUM | 6.5 | 1.2% | Feb 13, 2023 | A lack of length validation in GitLab CE/EE affecting all versions from 12.4 before 15.6.7, 15.7 before 15.7.6, and 15.8... |
| CVE-2022-4905 | MEDIUM | 6.1 | 0.7% | Feb 13, 2023 | A vulnerability was found in UDX Stateless Media Plugin 3.1.1 on WordPress. It has been declared as problematic. This vu... |
| CVE-2022-45962 | MEDIUM | 6.5 | 0.9% | Feb 13, 2023 | Open Solutions for Education, Inc openSIS Community Edition v8.0 and earlier is vulnerable to SQL Injection via Calendar... |
| CVE-2022-48110 | MEDIUM | 6.1 | 2.1% | Feb 13, 2023 | CKSource CKEditor 5 35.4.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Full Featured CK... |
| CVE-2022-45285 | MEDIUM | 6.1 | 0.5% | Feb 13, 2023 | Vsourz Digital Advanced Contact form 7 DB Versions 1.7.2 and 1.9.1 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2022-4830 | MEDIUM | 5.4 | 65.0% | Feb 13, 2023 | The Paid Memberships Pro WordPress plugin before 2.9.9 does not validate and escape some of its shortcode attributes bef... |
| CVE-2022-4783 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The Youtube Channel Gallery WordPress plugin through 2.4 does not validate and escape some of its shortcode attributes b... |
| CVE-2022-4759 | MEDIUM | 5.4 | 0.7% | Feb 13, 2023 | The GigPress WordPress plugin before 2.3.28 does not validate and escape some of its shortcode attributes before outputt... |
| CVE-2022-4682 | MEDIUM | 5.4 | 0.7% | Feb 13, 2023 | The Lightbox Gallery WordPress plugin before 0.9.5 does not validate and escape some of its shortcode attributes before ... |
| CVE-2022-4678 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The TemplatesNext ToolKit WordPress plugin before 3.2.8 does not validate and escape some of its shortcode attributes be... |
| CVE-2022-4656 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The WP Visitor Statistics (Real Time Traffic) WordPress plugin before 6.5 does not validate and escape one of its shortc... |
| CVE-2022-4628 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The Easy PayPal Buy Now Button WordPress plugin before 1.7.4 does not validate and escape some of its shortcode attribut... |
| CVE-2022-4580 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The Twenty20 Image Before-After WordPress plugin through 1.5.9 does not validate and escape some of its shortcode attrib... |
| CVE-2022-4562 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The Meks Flexible Shortcodes WordPress plugin before 1.3.5 does not validate and escape some of its shortcode attributes... |
| CVE-2022-4551 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The Rich Table of Contents WordPress plugin before 1.3.9 does not validate and escape some of its shortcode attributes b... |
| CVE-2022-4512 | MEDIUM | 5.4 | 0.8% | Feb 13, 2023 | The Better Font Awesome WordPress plugin before 2.0.4 does not validate and escape some of its shortcode attributes befo... |
| CVE-2022-4488 | MEDIUM | 5.4 | 0.7% | Feb 13, 2023 | The Widgets on Pages WordPress plugin before 1.8.0 does not validate and escape its shortcode attributes before outputti... |
| CVE-2022-4473 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The Widget Shortcode WordPress plugin through 0.3.5 does not validate and escape some of its shortcode attributes before... |
| CVE-2022-4471 | MEDIUM | 5.4 | 0.7% | Feb 13, 2023 | The YARPP WordPress plugin before 5.30.3 does not validate and escape some of its shortcode attributes before outputting... |
| CVE-2022-4458 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The amr shortcode any widget WordPress plugin through 4.0 does not validate and escape some of its shortcode attributes ... |
| CVE-2022-4448 | MEDIUM | 5.4 | 0.6% | Feb 13, 2023 | The GiveWP WordPress plugin before 2.24.0 does not validate and escape some of its shortcode attributes before outputtin... |
| CVE-2022-3891 | MEDIUM | 5.3 | 0.7% | Feb 13, 2023 | The WP FullCalendar WordPress plugin before 1.5 does not ensure that the post retrieved via an AJAX action is public and... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now