2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-4181HIGH8.8Use after free in Forms in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploit heap co...
CVE-2022-4180HIGH8.8Use after free in Mojo in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install a mal...
CVE-2022-4179HIGH8.8Use after free in Audio in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install a ma...
CVE-2022-4178HIGH8.8Use after free in Mojo in Google Chrome prior to 108.0.5359.71 allowed a remote attacker who had compromised the rendere...
CVE-2022-4177HIGH8.8Use after free in Extensions in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install...
CVE-2022-4176HIGH8.8Out of bounds write in Lacros Graphics in Google Chrome on Chrome OS and Lacros prior to 108.0.5359.71 allowed a remote ...
CVE-2022-4175HIGH8.8Use after free in Camera Capture in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploi...
CVE-2022-4174HIGH8.8Type confusion in V8 in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploit heap corru...
CVE-2022-4034HIGH7.8The Appointment Hour Booking Plugin for WordPress is vulnerable to CSV Injection in versions up to, and including, 1.3.7...
CVE-2022-4030HIGH8.1The Simple:Press plugin for WordPress is vulnerable to Path Traversal in versions up to, and including, 6.8 via the 'fil...
CVE-2022-3384HIGH7.2The Ultimate Member plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.5.0 ...
CVE-2022-3383HIGH7.2The Ultimate Member plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.5.0 ...
CVE-2022-36964HIGH8.8SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa...
CVE-2022-36962HIGH7.2SolarWinds Platform was susceptible to Command Injection. This vulnerability allows a remote adversary with complete con...
CVE-2022-36960HIGH8.8SolarWinds Platform was susceptible to Improper Input Validation. This vulnerability allows a remote adversary with vali...
CVE-2022-46152HIGH8.8OP-TEE Trusted OS is the secure side implementation of OP-TEE project, a Trusted Execution Environment. Versions prior t...
CVE-2022-44356HIGH7.5WAVLINK Quantum D4G (WL-WN531G3) running firmware versions M31G3.V5030.201204 and M31G3.V5030.200325 has an access contr...
CVE-2022-25848HIGH7.5This affects all versions of package static-dev-server. This is because when paths from users to the root directory are ...
CVE-2022-21126HIGH7.8The package com.github.samtools:htsjdk before 3.0.1 are vulnerable to Creation of Temporary File in Directory with Insec...
CVE-2022-45343HIGH7.8GPAC v2.1-DEV-rev478-g696e6f868-master was discovered to contain a heap use-after-free via the Q_IsTypeOn function at /g...
CVE-2022-44635HIGH8.8Apache Fineract allowed an authenticated user to perform remote code execution due to a path traversal vulnerability in ...
CVE-2022-46146HIGH8.8Prometheus Exporter Toolkit is a utility package to build exporters. Prior to versions 0.7.2 and 0.8.2, if someone has a...
CVE-2022-4202HIGH8.8A vulnerability, which was classified as problematic, was found in GPAC 2.1-DEV-rev490-g68064e101-master. Affected is th...
CVE-2022-45329HIGH7.5AeroCMS v0.0.1 was discovered to contain a SQL Injection vulnerability via the Search parameter. This vulnerability allo...
CVE-2022-43326HIGH7.5An Insecure Direct Object Reference (IDOR) vulnerability in the password reset function of Telos Alliance Omnia MPX Node...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now