2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4734 | MEDIUM | 4.3 | 0.8% | Dec 27, 2022 | Improper Removal of Sensitive Information Before Storage or Transfer in GitHub repository usememos/memos prior to 0.9.1.... |
| CVE-2022-4733 | MEDIUM | 4.8 | 0.6% | Dec 27, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository openemr/openemr prior to 7.0.0.2. |
| CVE-2022-4730 | MEDIUM | 5.4 | 0.8% | Dec 27, 2022 | A vulnerability was found in Graphite Web. It has been classified as problematic. Affected is an unknown function of the... |
| CVE-2022-4729 | MEDIUM | 5.4 | 0.7% | Dec 27, 2022 | A vulnerability was found in Graphite Web and classified as problematic. This issue affects some unknown processing of t... |
| CVE-2022-4728 | MEDIUM | 5.4 | 0.8% | Dec 27, 2022 | A vulnerability has been found in Graphite Web and classified as problematic. This vulnerability affects unknown code of... |
| CVE-2022-4727 | MEDIUM | 6.1 | 0.9% | Dec 27, 2022 | A vulnerability, which was classified as problematic, was found in OpenMRS Appointment Scheduling Module up to 1.16.x. T... |
| CVE-2022-4723 | MEDIUM | 6.5 | 0.6% | Dec 27, 2022 | Allocation of Resources Without Limits or Throttling in GitHub repository ikus060/rdiffweb prior to 2.5.5. |
| CVE-2022-4721 | MEDIUM | 5.4 | 0.5% | Dec 27, 2022 | Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository ikus060/rdi... |
| CVE-2022-4720 | MEDIUM | 6.1 | 0.5% | Dec 27, 2022 | Open Redirect in GitHub repository ikus060/rdiffweb prior to 2.5.5. |
| CVE-2022-4695 | MEDIUM | 5.4 | 0.7% | Dec 27, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4694 | MEDIUM | 5.4 | 0.5% | Dec 27, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4691 | MEDIUM | 5.4 | 0.7% | Dec 27, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.9.0. |
| CVE-2022-4766 | MEDIUM | 6.5 | 0.3% | Dec 27, 2022 | A vulnerability was found in dolibarr_project_timesheet up to 4.5.5. It has been declared as problematic. This vulnerabi... |
| CVE-2022-4755 | MEDIUM | 6.1 | 0.5% | Dec 27, 2022 | A vulnerability was found in FlatPress and classified as problematic. This issue affects the function main of the file f... |
| CVE-2022-36664 | MEDIUM | 6.1 | 3.8% | Dec 26, 2022 | Password Manager for IIS 2.0 has a cross-site scripting (XSS) vulnerability via the /isapi/PasswordManager.dll ResultURL... |
| CVE-2022-4267 | MEDIUM | 6.1 | 0.5% | Dec 26, 2022 | The Bulk Delete Users by Email WordPress plugin through 1.2 does not sanitise and escape a parameter before outputting i... |
| CVE-2022-4266 | MEDIUM | 6.5 | 0.3% | Dec 26, 2022 | The Bulk Delete Users by Email WordPress plugin through 1.2 does not have CSRF check when deleting users, which could al... |
| CVE-2022-4243 | MEDIUM | 4.8 | 0.5% | Dec 26, 2022 | The ImageInject WordPress plugin through 1.17 does not sanitise and escape some of its settings, which could allow high ... |
| CVE-2022-4242 | MEDIUM | 4.8 | 0.5% | Dec 26, 2022 | The WP Google Review Slider WordPress plugin before 11.6 does not sanitise and escape some of its settings, which could ... |
| CVE-2022-4239 | MEDIUM | 6.5 | 0.6% | Dec 26, 2022 | The Workreap WordPress theme before 2.6.4 does not verify that an addon service belongs to the user issuing the request,... |
| CVE-2022-4227 | MEDIUM | 6.1 | 0.4% | Dec 26, 2022 | The Booster for WooCommerce WordPress plugin before 5.6.3, Booster Plus for WooCommerce WordPress plugin before 6.0.0, B... |
| CVE-2022-4226 | MEDIUM | 4.8 | 0.5% | Dec 26, 2022 | The Simple Basic Contact Form WordPress plugin before 20221201 does not sanitise and escape some of its settings, which ... |
| CVE-2022-4197 | MEDIUM | 4.8 | 0.5% | Dec 26, 2022 | The Sliderby10Web WordPress plugin before 1.2.53 does not sanitise and escape some of its settings, which could allow hi... |
| CVE-2022-4166 | MEDIUM | 6.5 | 0.9% | Dec 26, 2022 | The Contest Gallery WordPress plugin before 19.1.5.1, Contest Gallery Pro WordPress plugin before 19.1.5.1 do not escape... |
| CVE-2022-4165 | MEDIUM | 6.5 | 0.9% | Dec 26, 2022 | The Contest Gallery WordPress plugin before 19.1.5.1, Contest Gallery Pro WordPress plugin before 19.1.5.1 do not escape... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now