2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4181 | HIGH | 8.8 | 0.7% | Nov 30, 2022 | Use after free in Forms in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploit heap co... |
| CVE-2022-4180 | HIGH | 8.8 | 0.5% | Nov 30, 2022 | Use after free in Mojo in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install a mal... |
| CVE-2022-4179 | HIGH | 8.8 | 0.5% | Nov 30, 2022 | Use after free in Audio in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install a ma... |
| CVE-2022-4178 | HIGH | 8.8 | 23.9% | Nov 30, 2022 | Use after free in Mojo in Google Chrome prior to 108.0.5359.71 allowed a remote attacker who had compromised the rendere... |
| CVE-2022-4177 | HIGH | 8.8 | 0.5% | Nov 30, 2022 | Use after free in Extensions in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install... |
| CVE-2022-4176 | HIGH | 8.8 | 0.6% | Nov 30, 2022 | Out of bounds write in Lacros Graphics in Google Chrome on Chrome OS and Lacros prior to 108.0.5359.71 allowed a remote ... |
| CVE-2022-4175 | HIGH | 8.8 | 0.7% | Nov 30, 2022 | Use after free in Camera Capture in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploi... |
| CVE-2022-4174 | HIGH | 8.8 | 0.9% | Nov 30, 2022 | Type confusion in V8 in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2022-4034 | HIGH | 7.8 | 0.6% | Nov 29, 2022 | The Appointment Hour Booking Plugin for WordPress is vulnerable to CSV Injection in versions up to, and including, 1.3.7... |
| CVE-2022-4030 | HIGH | 8.1 | 1.6% | Nov 29, 2022 | The Simple:Press plugin for WordPress is vulnerable to Path Traversal in versions up to, and including, 6.8 via the 'fil... |
| CVE-2022-3384 | HIGH | 7.2 | 2.7% | Nov 29, 2022 | The Ultimate Member plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.5.0 ... |
| CVE-2022-3383 | HIGH | 7.2 | 2.8% | Nov 29, 2022 | The Ultimate Member plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.5.0 ... |
| CVE-2022-36964 | HIGH | 8.8 | 16.8% | Nov 29, 2022 | SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa... |
| CVE-2022-36962 | HIGH | 7.2 | 9.0% | Nov 29, 2022 | SolarWinds Platform was susceptible to Command Injection. This vulnerability allows a remote adversary with complete con... |
| CVE-2022-36960 | HIGH | 8.8 | 0.9% | Nov 29, 2022 | SolarWinds Platform was susceptible to Improper Input Validation. This vulnerability allows a remote adversary with vali... |
| CVE-2022-46152 | HIGH | 8.8 | 0.5% | Nov 29, 2022 | OP-TEE Trusted OS is the secure side implementation of OP-TEE project, a Trusted Execution Environment. Versions prior t... |
| CVE-2022-44356 | HIGH | 7.5 | 2.8% | Nov 29, 2022 | WAVLINK Quantum D4G (WL-WN531G3) running firmware versions M31G3.V5030.201204 and M31G3.V5030.200325 has an access contr... |
| CVE-2022-25848 | HIGH | 7.5 | 1.0% | Nov 29, 2022 | This affects all versions of package static-dev-server. This is because when paths from users to the root directory are ... |
| CVE-2022-21126 | HIGH | 7.8 | 0.7% | Nov 29, 2022 | The package com.github.samtools:htsjdk before 3.0.1 are vulnerable to Creation of Temporary File in Directory with Insec... |
| CVE-2022-45343 | HIGH | 7.8 | 0.3% | Nov 29, 2022 | GPAC v2.1-DEV-rev478-g696e6f868-master was discovered to contain a heap use-after-free via the Q_IsTypeOn function at /g... |
| CVE-2022-44635 | HIGH | 8.8 | 68.8% | Nov 29, 2022 | Apache Fineract allowed an authenticated user to perform remote code execution due to a path traversal vulnerability in ... |
| CVE-2022-46146 | HIGH | 8.8 | 1.2% | Nov 29, 2022 | Prometheus Exporter Toolkit is a utility package to build exporters. Prior to versions 0.7.2 and 0.8.2, if someone has a... |
| CVE-2022-4202 | HIGH | 8.8 | 0.8% | Nov 29, 2022 | A vulnerability, which was classified as problematic, was found in GPAC 2.1-DEV-rev490-g68064e101-master. Affected is th... |
| CVE-2022-45329 | HIGH | 7.5 | 0.8% | Nov 29, 2022 | AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the Search parameter. This vulnerability allo... |
| CVE-2022-43326 | HIGH | 7.5 | 0.7% | Nov 29, 2022 | An Insecure Direct Object Reference (IDOR) vulnerability in the password reset function of Telos Alliance Omnia MPX Node... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now