2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-47029HIGH7.8An issue was found in Action Launcher v50.5 allows an attacker to escalate privilege via modification of the intent stri...
CVE-2022-47028MEDIUM5.5An issue discovered in Action Launcher for Android v50.5 allows an attacker to cause a denial of service via arbitary da...
CVE-2022-36250HIGH8.8Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Cross Site Request Forgery (CS...
CVE-2022-36249MEDIUM5.4Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Bypass 2FA via APIs. For Contr...
CVE-2022-36247CRITICAL9.1Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to IDOR via controlpanel.shopbeat...
CVE-2022-36246CRITICAL9.8Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Insecure Permissions.
CVE-2022-36244MEDIUM5.4Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 suffers from Multiple Stored Cross-Site Scripti...
CVE-2022-36243MEDIUM5.3Shop Beat Solutions (pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Directory Traversal via server...
CVE-2022-4240HIGH7.5Missing Authentication for Critical Function vulnerability in Honeywell OneWireless allows Authentication Bypass. This i...
CVE-2022-46361MEDIUM6.8An attacker having physical access to WDM can plug USB device to gain access and execute unwanted commands. A malicious ...
CVE-2022-43485MEDIUM6.5 Use of Insufficiently Random Values in Honeywell OneWireless. This vulnerability may allow attacker to manipulate claim...
CVE-2022-45853MEDIUM6.7The privilege escalation vulnerability in the Zyxel GS1900-8 firmware version V2.70(AAHH.3) and the GS1900-8HP firmwar...
CVE-2022-4676MEDIUM5.4The OSM WordPress plugin through 6.01 does not validate and escape some of its shortcode attributes, which could allow u...
CVE-2022-41766MEDIUM4.3An issue was discovered in MediaWiki before 1.35.8, 1.36.x and 1.37.x before 1.37.5, and 1.38.x before 1.38.3. Upon an a...
CVE-2022-24632MEDIUM5.3An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is directory traversal during f...
CVE-2022-24631MEDIUM5.4An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is stored XSS via the ajaxTenan...
CVE-2022-24630HIGH7.2An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. BrowseFiles.php allows a ?cmd=ssh ...
CVE-2022-24629CRITICAL9.8An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. Remote code execution can be achie...
CVE-2022-24628HIGH7.2An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is authenticated SQL injection ...
CVE-2022-24627CRITICAL9.8An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is an unauthenticated SQL injec...
CVE-2022-24580Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-24580. Reason: This candidate is a duplicate of ...
CVE-2022-32738Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2022-32737Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2022-32736Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2022-32735Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now