2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32517 | MEDIUM | 6.5 | 0.4% | Jan 30, 2023 | A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to t... |
| CVE-2022-32516 | MEDIUM | 6.5 | 0.2% | Jan 30, 2023 | A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists that could cause system’s configurations override and ... |
| CVE-2022-40137 | MEDIUM | 6.7 | 0.2% | Jan 30, 2023 | A buffer overflow in the WMI SMI Handler in some Lenovo models may allow an attacker with local access and elevated priv... |
| CVE-2022-40136 | MEDIUM | 4.4 | 0.2% | Jan 30, 2023 | An information leak vulnerability in SMI Handler used to configure platform settings over WMI in some Lenovo models may ... |
| CVE-2022-40135 | MEDIUM | 4.4 | 0.2% | Jan 30, 2023 | An information leak vulnerability in the Smart USB Protection SMI Handler in some Lenovo models may allow an attacker wi... |
| CVE-2022-40134 | MEDIUM | 4.4 | 0.2% | Jan 30, 2023 | An information leak vulnerability in the SMI Set BIOS Password SMI Handler in some Lenovo models may allow an attacker w... |
| CVE-2022-34888 | MEDIUM | 4.3 | 0.4% | Jan 30, 2023 | The Remote Mount feature can potentially be abused by valid, authenticated users to make connections to internal service... |
| CVE-2022-34885 | MEDIUM | 6.7 | 0.5% | Jan 30, 2023 | An improper input sanitization vulnerability in the Motorola MR2600 router could allow a local user with elevated permis... |
| CVE-2022-34884 | MEDIUM | 6.5 | 0.6% | Jan 30, 2023 | A buffer overflow exists in the Remote Presence subsystem which can potentially allow valid, authenticated users to caus... |
| CVE-2022-4872 | MEDIUM | 4.3 | 0.3% | Jan 30, 2023 | The Chained Products WordPress plugin before 2.12.0 does not have authorisation and CSRF checks, as well as does not ens... |
| CVE-2022-4837 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The CPO Companion WordPress plugin before 1.1.0 does not validate and escape some of its shortcode attributes before out... |
| CVE-2022-4835 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The Social Sharing Toolkit WordPress plugin through 2.6 does not validate and escape some of its shortcode attributes be... |
| CVE-2022-4834 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The CPT Bootstrap Carousel WordPress plugin through 1.12 does not validate and escape some of its shortcode attributes b... |
| CVE-2022-4831 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The Custom User Profile Fields for User Registration WordPress plugin before 1.8.1 does not validate and escape some of ... |
| CVE-2022-4828 | MEDIUM | 5.4 | 1.0% | Jan 30, 2023 | The Bold Timeline Lite WordPress plugin before 1.1.5 does not validate and escape some of its shortcode attributes befor... |
| CVE-2022-4793 | MEDIUM | 5.4 | 0.6% | Jan 30, 2023 | The Blog Designer WordPress plugin before 2.4.1 does not validate and escape one of its shortcode attributes, which coul... |
| CVE-2022-4792 | MEDIUM | 5.4 | 0.4% | Jan 30, 2023 | The News & Blog Designer Pack WordPress plugin before 3.3 does not validate and escape one of its shortcode attributes, ... |
| CVE-2022-4787 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | Themify Shortcodes WordPress plugin before 2.0.8 does not validate and escape one of its shortcode attributes, which cou... |
| CVE-2022-4781 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The Accordion Shortcodes WordPress plugin through 2.4.2 does not validate and escape one of its shortcode attributes, wh... |
| CVE-2022-4776 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The CC Child Pages WordPress plugin before 1.43 does not validate and escape some of its shortcode attributes before out... |
| CVE-2022-4765 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The Portfolio for Elementor WordPress plugin before 2.3.1 does not validate and escape some of its shortcode attributes ... |
| CVE-2022-4763 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The Icon Widget WordPress plugin before 1.3.0 does not validate and escape some of its shortcode attributes before outpu... |
| CVE-2022-4749 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The Posts List Designer by Category WordPress plugin before 3.2 does not validate and escape some of its shortcode attri... |
| CVE-2022-4699 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The MediaElement.js WordPress plugin through 4.2.8 does not validate and escape some of its shortcode attributes before ... |
| CVE-2022-4671 | MEDIUM | 5.4 | 0.5% | Jan 30, 2023 | The PixCodes WordPress plugin before 2.3.7 does not validate and escape some of its shortcode attributes before outputti... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now