2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-4188MEDIUM4.3Insufficient validation of untrusted input in CORS in Google Chrome on Android prior to 108.0.5359.71 allowed a remote a...
CVE-2022-4187MEDIUM6.5Insufficient policy enforcement in DevTools in Google Chrome on Windows prior to 108.0.5359.71 allowed a remote attacker...
CVE-2022-4186MEDIUM4.3Insufficient validation of untrusted input in Downloads in Google Chrome prior to 108.0.5359.71 allowed an attacker who ...
CVE-2022-4185MEDIUM4.3Inappropriate implementation in Navigation in Google Chrome on iOS prior to 108.0.5359.71 allowed a remote attacker to s...
CVE-2022-4184MEDIUM4.3Insufficient policy enforcement in Autofill in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to bypass ...
CVE-2022-4183MEDIUM4.3Insufficient policy enforcement in Popup Blocker in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to by...
CVE-2022-4182MEDIUM4.3Inappropriate implementation in Fenced Frames in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to bypas...
CVE-2022-46155MEDIUM6.4Airtable.js is the JavaScript client for Airtable. Prior to version 0.11.6, Airtable.js had a misconfigured build script...
CVE-2022-4036MEDIUM5.3The Appointment Hour Booking plugin for WordPress is vulnerable to CAPTCHA bypass in versions up to, and including, 1.3....
CVE-2022-4035MEDIUM6.1The Appointment Hour Booking plugin for WordPress is vulnerable to iFrame Injection via the ‘email’ or general field par...
CVE-2022-4033MEDIUM5.3The Quiz and Survey Master plugin for WordPress is vulnerable to input validation bypass via the 'question[id]' paramete...
CVE-2022-4032MEDIUM6.1The Quiz and Survey Master plugin for WordPress is vulnerable to iFrame Injection via the 'question[id]' parameter in ve...
CVE-2022-4031MEDIUM4.9The Simple:Press plugin for WordPress is vulnerable to arbitrary file modifications in versions up to, and including, 6....
CVE-2022-4029MEDIUM4.7The Simple:Press plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'sforum_[md5 hash of the W...
CVE-2022-4028MEDIUM5.4The Simple:Press plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'postitem' parameter manipula...
CVE-2022-4027MEDIUM5.4The Simple:Press plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'postitem' parameter manipula...
CVE-2022-3995MEDIUM4.3The TeraWallet plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, ...
CVE-2022-3991MEDIUM5.4The Photospace Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via its settings parameters sav...
CVE-2022-3898MEDIUM6.5The WP Affiliate Platform plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2022-3897MEDIUM4.8The WP Affiliate Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in ve...
CVE-2022-3896MEDIUM6.1The WP Affiliate Platform plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via $_SERVER["REQUEST_URI...
CVE-2022-3747MEDIUM6.5The Becustom plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.5.2....
CVE-2022-3361MEDIUM4.3The Ultimate Member plugin for WordPress is vulnerable to directory traversal in versions up to, and including 2.5.0 due...
CVE-2022-44279MEDIUM6.1Garage Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via /garage/php_action/createBrand.php.
CVE-2022-4172MEDIUM6.5An integer overflow and buffer overflow issues were found in the ACPI Error Record Serialization Table (ERST) device of ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now