2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45065 | MEDIUM | 6.1 | 0.4% | May 8, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Squirrly SEO Plugin by Squirrly SEO plugin <= 12.1.20 vers... |
| CVE-2022-4118 | CRITICAL | 9.8 | 0.9% | May 8, 2023 | The Bitcoin / AltCoin Payment Gateway for WooCommerce & Multivendor store / shop WordPress plugin through 1.7.1 does not... |
| CVE-2022-45812 | MEDIUM | 5.4 | 0.4% | May 8, 2023 | Auth. (subscriber+) Stored Cross-Site Scripting (XSS) vulnerability in Martin Lees Exxp plugin <= 2.6.8 versions. |
| CVE-2022-46799 | MEDIUM | 6.1 | 0.4% | May 8, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in I Thirteen Web Solution Easy Testimonial Slider and Form p... |
| CVE-2022-43877 | MEDIUM | 5.1 | 0.2% | May 6, 2023 | IBM UrbanCode Deploy (UCD) versions up to 7.3.0.1 could disclose sensitive password information during a manual edit of ... |
| CVE-2022-22313 | HIGH | 7.5 | 0.4% | May 6, 2023 | IBM QRadar Data Synchronization App 1.0 through 3.0.1 uses weaker than expected cryptographic algorithms that could allo... |
| CVE-2022-43866 | MEDIUM | 5.4 | 0.4% | May 5, 2023 | IBM Maximo Asset Management 7.6.1.2 and 7.6.1.3 is vulnerable to cross-site scripting. This vulnerability allows users t... |
| CVE-2022-43919 | MEDIUM | 6.5 | 0.7% | May 5, 2023 | IBM MQ 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS could allow an authenticated attacker with authorization to craft messages t... |
| CVE-2022-38707 | MEDIUM | 5.5 | 0.2% | May 5, 2023 | IBM Cognos Command Center 10.2.4.1 could allow a local attacker to obtain sensitive information due to insufficient sess... |
| CVE-2022-45048 | HIGH | 8.8 | 1.1% | May 5, 2023 | Authenticated users with appropriate privileges can create policies having expressions that can exploit code execution v... |
| CVE-2022-47449 | MEDIUM | 6.1 | 0.4% | May 4, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in RexTheme Cart Lift – Abandoned Cart Recovery for WooCommer... |
| CVE-2022-47434 | MEDIUM | 4.8 | 0.4% | May 4, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in PB SEO Friendly Images plugin <= 4.0.5 versions. |
| CVE-2022-45818 | MEDIUM | 5.4 | 0.4% | May 4, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WP OnlineSupport, Essential Plugin Hero Banner U... |
| CVE-2022-4259 | HIGH | 8.8 | 0.6% | May 4, 2023 | Due to improper input validation in the Alerts controller, a SQL injection vulnerability in Nozomi Networks Guardian and... |
| CVE-2022-47757 | CRITICAL | 9.8 | 1.0% | May 4, 2023 | In imo.im 2022.11.1051, a path traversal vulnerability delivered via an unsanitized deeplink can force the application t... |
| CVE-2022-4376 | MEDIUM | 4.3 | 0.8% | May 3, 2023 | An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15.... |
| CVE-2022-45860 | HIGH | 7.5 | 0.5% | May 3, 2023 | A weak authentication vulnerability [CWE-1390] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.2 and below, 9.2 all ve... |
| CVE-2022-45859 | MEDIUM | 4.4 | 0.1% | May 3, 2023 | An insufficiently protected credentials vulnerability [CWE-522] in FortiNAC-F 7.2.0, FortiNAC 9.4.1 and below, 9.2.6 and... |
| CVE-2022-45858 | HIGH | 7.4 | 0.2% | May 3, 2023 | A use of a weak cryptographic algorithm vulnerability [CWE-327] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.0 all ... |
| CVE-2022-43950 | MEDIUM | 4.7 | 0.4% | May 3, 2023 | A URL redirection to untrusted site ('Open Redirect') vulnerability [CWE-601] in FortiNAC-F version 7.2.0, FortiNAC vers... |
| CVE-2022-39161 | MEDIUM | 5.3 | 0.4% | May 3, 2023 | IBM WebSphere Application Server 7.0, 8.0, 8.5, 9.0, and IBM WebSphere Application Server Liberty, when configured to co... |
| CVE-2022-46852 | MEDIUM | 4.8 | 0.4% | May 3, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP Table Builder plugin <= 1.4.6 versions. |
| CVE-2022-43681 | MEDIUM | 6.5 | 2.1% | May 3, 2023 | An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message t... |
| CVE-2022-40318 | MEDIUM | 6.5 | 2.0% | May 3, 2023 | An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0x... |
| CVE-2022-40302 | MEDIUM | 6.5 | 2.0% | May 3, 2023 | An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0x... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now