2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4487 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Easy Accordion WordPress plugin before 2.2.0 does not validate and escape some of its shortcode attributes before ou... |
| CVE-2022-4486 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Meteor Slides WordPress plugin before 1.5.7 does not validate and escape some of its shortcode attributes before out... |
| CVE-2022-4484 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Social Share, Social Login and Social Comments Plugin WordPress plugin before 7.13.44 does not validate and escape s... |
| CVE-2022-4483 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Insert Pages WordPress plugin before 3.7.5 does not validate and escape some of its shortcode attributes before outp... |
| CVE-2022-4482 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Carousel, Slider, Gallery by WP Carousel WordPress plugin before 2.5.3 does not validate and escape some of its shor... |
| CVE-2022-4481 | MEDIUM | 5.4 | 0.6% | Jan 16, 2023 | The Mesmerize Companion WordPress plugin before 1.6.135 does not validate and escape some of its shortcode attributes be... |
| CVE-2022-4480 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Click to Chat WordPress plugin before 3.18.1 does not validate and escape some of its shortcode attributes before ou... |
| CVE-2022-4478 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Font Awesome WordPress plugin before 4.3.2 does not validate and escapes some of its shortcode attributes before out... |
| CVE-2022-4477 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Smash Balloon Social Post Feed WordPress plugin before 4.1.6 does not validate and escapes some of its shortcode att... |
| CVE-2022-4476 | MEDIUM | 5.4 | 0.6% | Jan 16, 2023 | The Download Manager WordPress plugin before 3.2.62 does not validate and escapes some of its shortcode attributes befor... |
| CVE-2022-4469 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Simple Membership WordPress plugin before 4.2.2 does not validate and escape some of its shortcode attributes before... |
| CVE-2022-4465 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The WP Video Lightbox WordPress plugin before 1.9.7 does not validate and escape some of its shortcode attributes before... |
| CVE-2022-4464 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | Themify Portfolio Post WordPress plugin before 1.2.1 does not validate and escapes some of its shortcode attributes befo... |
| CVE-2022-4460 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Sidebar Widgets by CodeLights WordPress plugin through 1.4 does not validate and escape some of its shortcode attrib... |
| CVE-2022-4453 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The 3D FlipBook WordPress plugin through 1.13.2 does not validate or escape some of its shortcode attributes before outp... |
| CVE-2022-4451 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Social Sharing WordPress plugin before 3.3.45 does not validate and escape some of its shortcode attributes before o... |
| CVE-2022-4449 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The Page scroll to id WordPress plugin before 1.7.6 does not validate and escape some of its shortcode attributes before... |
| CVE-2022-4442 | MEDIUM | 4.8 | 0.5% | Jan 16, 2023 | The Custom Post Types and Custom Fields creator WordPress plugin before 2.3.3 does not sanitize and escape some of its s... |
| CVE-2022-4431 | MEDIUM | 5.4 | 0.5% | Jan 16, 2023 | The WOOCS WordPress plugin before 1.3.9.4 does not validate and escape some of its shortcode attributes before outputtin... |
| CVE-2022-4330 | MEDIUM | 4.8 | 0.5% | Jan 16, 2023 | The WP Attachments WordPress plugin before 5.0.6 does not sanitise and escape some of its settings, which could allow hi... |
| CVE-2022-4320 | MEDIUM | 6.1 | 0.9% | Jan 16, 2023 | The WordPress Events Calendar WordPress plugin before 1.4.5 does not sanitize and escapes a parameter before outputting ... |
| CVE-2022-4299 | MEDIUM | 4.8 | 0.5% | Jan 16, 2023 | The Metricool WordPress plugin before 1.18 does not sanitise and escape some of its settings, which could allow high pri... |
| CVE-2022-4295 | MEDIUM | 6.1 | 0.9% | Jan 16, 2023 | The Show All Comments WordPress plugin before 7.0.1 does not sanitise and escape a parameter before outputting it back i... |
| CVE-2022-4199 | MEDIUM | 4.8 | 0.5% | Jan 16, 2023 | The Link Library WordPress plugin before 7.4.1 does not sanitise and escape some of its settings, which could allow high... |
| CVE-2022-3904 | MEDIUM | 6.1 | 1.3% | Jan 16, 2023 | The MonsterInsights WordPress plugin before 8.9.1 does not sanitize or escape page titles in the top posts/pages section... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now