2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-47311HIGH8.8A proprietary protocol for iBoot devices is used for control and keepalive commands. The function compares the username ...
CVE-2022-46738CRITICAL9.8The affected product exposes multiple sensitive data fields of the affected product. An attacker can use the SNMP comman...
CVE-2022-46658CRITICAL9.8The affected product is vulnerable to a stack-based buffer overflow which could lead to a denial of service or remote co...
CVE-2022-4945MEDIUM6.5The Dataprobe cloud usernames and passwords are stored in plain text in a specific file. Any user able to read this spec...
CVE-2022-46680CRITICAL9.8 A CWE-319: Cleartext transmission of sensitive information vulnerability exists that could cause disclosure of sensitiv...
CVE-2022-47611HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Julian Weinert // cs&m Hover Image plugin <= 1.4.1 versions.
CVE-2022-47183HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in StylistWP Extra Block Design, Style, CSS for ANY Gutenberg Blocks plu...
CVE-2022-47167HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Aram Kocharyan Crayon Syntax Highlighter plugin <= 2.8.4 versions.
CVE-2022-45376HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in XootiX Side Cart Woocommerce (Ajax) < 2.1 versions.
CVE-2022-45079HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Softaculous Loginizer plugin <= 1.7.5 versions.
CVE-2022-45076HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WebMat Flexible Elementor Panel plugin <= 2.3.8 versions.
CVE-2022-44739CRITICAL9.8Cross-Site Request Forgery (CSRF) vulnerability in ThingsForRestaurants Quick Restaurant Reservations plugin <= 1.5.4 ve...
CVE-2022-41608HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Thomas Belser Asgaros Forum plugin <= 2.2.0 versions.
CVE-2022-47609HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Nicearma DNUI plugin <= 2.8.1 versions.
CVE-2022-47142HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Plugincraft Mediamatic – Media Library Folders plugin <= 2.8.1 versio...
CVE-2022-0010MEDIUM5.5Insertion of Sensitive Information into Log File vulnerability in ABB QCS 800xA, ABB QCS AC450, ABB Platform Engineering...
CVE-2022-47134HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Bill Erickson Gallery Metabox plugin <= 1.5 versions.
CVE-2022-47984CRITICAL9.8IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQ...
CVE-2022-30114HIGH7.5A heap-based buffer overflow in a network service in Fastweb FASTGate MediaAccess FGA2130FWB, firmware version 18.3.n.04...
CVE-2022-35798LOW3.3Azure Arc Jumpstart Information Disclosure Vulnerability
CVE-2022-36328MEDIUM4.9Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could allow an attacke...
CVE-2022-36327CRITICAL9.8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could allow an attacke...
CVE-2022-36326MEDIUM4.9An uncontrolled resource consumption vulnerability issue that could arise by sending crafted requests to a service to co...
CVE-2022-47157MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Don Benjamin WP Custom Fields Search plugin <= 1.2.34 ...
CVE-2022-4418HIGH7.8Local privilege escalation due to unrestricted loading of unsigned libraries. The following products are affected: Acron...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now