2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-47172 | HIGH | 8.8 | 0.2% | Jul 17, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in HasThemes ShopLentor plugin <= 2.6.2 versions. |
| CVE-2022-4023 | MEDIUM | 5.3 | 0.3% | Jul 17, 2023 | The 3DPrint WordPress plugin before 3.5.6.9 does not protect against CSRF attacks in the modified version of Tiny File M... |
| CVE-2022-4952 | HIGH | 7.5 | 0.7% | Jul 17, 2023 | A vulnerability has been found in OmniSharp csharp-language-server-protocol up to 0.19.6 and classified as problematic. ... |
| CVE-2022-42045 | MEDIUM | 6.7 | 0.6% | Jul 13, 2023 | Certain Zemana products are vulnerable to Arbitrary code injection. This affects Watchdog Anti-Malware 4.1.422 and Zeman... |
| CVE-2022-24834 | HIGH | 8.8 | 42.9% | Jul 13, 2023 | Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a he... |
| CVE-2022-46651 | MEDIUM | 6.5 | 0.9% | Jul 12, 2023 | Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an unauthorized actor to gain access t... |
| CVE-2022-45855 | HIGH | 8.8 | 1.1% | Jul 12, 2023 | SpringEL injection in the metrics source in Apache Ambari version 2.7.0 to 2.7.6 allows a malicious authenticated user t... |
| CVE-2022-42009 | HIGH | 8.8 | 1.1% | Jul 12, 2023 | SpringEL injection in the server agent in Apache Ambari version 2.7.0 to 2.7.6 allows a malicious authenticated user to ... |
| CVE-2022-48451 | MEDIUM | 4.1 | 0.1% | Jul 12, 2023 | In bluetooth service, there is a possible out of bounds write due to race condition. This could lead to local denial of... |
| CVE-2022-48450 | MEDIUM | 4.4 | 0.1% | Jul 12, 2023 | In bluetooth service, there is a possible missing params check. This could lead to local denial of service with System ... |
| CVE-2022-48521 | MEDIUM | 5.3 | 0.6% | Jul 11, 2023 | An issue was discovered in OpenDKIM through 2.10.3, and 2.11.x through 2.11.0-Beta2. It fails to keep track of ordinal n... |
| CVE-2022-23447 | HIGH | 7.5 | 0.8% | Jul 11, 2023 | An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in FortiExtende... |
| CVE-2022-31810 | HIGH | 7.5 | 0.7% | Jul 11, 2023 | A vulnerability has been identified in SiPass integrated (All versions < V2.90.3.8). Affected server applications improp... |
| CVE-2022-29562 | MEDIUM | 5.3 | 0.6% | Jul 11, 2023 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2022-29561 | HIGH | 8.8 | 0.2% | Jul 11, 2023 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2022-22302 | LOW | 3.3 | 0.3% | Jul 11, 2023 | A clear text storage of sensitive information (CWE-312) vulnerability in both FortiGate version 6.4.0 through 6.4.1, 6.2... |
| CVE-2022-45823 | HIGH | 8.8 | 0.3% | Jul 11, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in GalleryPlugins Video Contest WordPress plugin <= 3.2 versions. |
| CVE-2022-4361 | MEDIUM | 6.1 | 0.6% | Jul 7, 2023 | Keycloak, an open-source identity and access management solution, has a cross-site scripting (XSS) vulnerability in the ... |
| CVE-2022-48520 | HIGH | 7.5 | 0.4% | Jul 6, 2023 | Unauthorized access vulnerability in the SystemUI module. Successful exploitation of this vulnerability may affect confi... |
| CVE-2022-48519 | HIGH | 7.5 | 0.4% | Jul 6, 2023 | Unauthorized access vulnerability in the SystemUI module. Successful exploitation of this vulnerability may affect confi... |
| CVE-2022-48518 | MEDIUM | 5.5 | 0.1% | Jul 6, 2023 | Vulnerability of signature verification in the iaware system being initialized later than the time when the system broad... |
| CVE-2022-48517 | HIGH | 7.5 | 0.4% | Jul 6, 2023 | Unauthorized service access vulnerability in the DSoftBus module. Successful exploitation of this vulnerability will aff... |
| CVE-2022-48516 | HIGH | 7.5 | 0.3% | Jul 6, 2023 | Vulnerability that a unique value can be obtained by a third-party app in the DSoftBus module. Successful exploitation o... |
| CVE-2022-48515 | HIGH | 7.5 | 0.3% | Jul 6, 2023 | Vulnerability of inappropriate permission control in Nearby. Successful exploitation of this vulnerability may affect se... |
| CVE-2022-48514 | HIGH | 7.5 | 0.3% | Jul 6, 2023 | The Sepolicy module has inappropriate permission control on the use of Netlink.Successful exploitation of this vulnerabi... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now