2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4188 | MEDIUM | 4.3 | 0.6% | Nov 30, 2022 | Insufficient validation of untrusted input in CORS in Google Chrome on Android prior to 108.0.5359.71 allowed a remote a... |
| CVE-2022-4187 | MEDIUM | 6.5 | 0.6% | Nov 30, 2022 | Insufficient policy enforcement in DevTools in Google Chrome on Windows prior to 108.0.5359.71 allowed a remote attacker... |
| CVE-2022-4186 | MEDIUM | 4.3 | 0.4% | Nov 30, 2022 | Insufficient validation of untrusted input in Downloads in Google Chrome prior to 108.0.5359.71 allowed an attacker who ... |
| CVE-2022-4185 | MEDIUM | 4.3 | 0.8% | Nov 30, 2022 | Inappropriate implementation in Navigation in Google Chrome on iOS prior to 108.0.5359.71 allowed a remote attacker to s... |
| CVE-2022-4184 | MEDIUM | 4.3 | 0.6% | Nov 30, 2022 | Insufficient policy enforcement in Autofill in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to bypass ... |
| CVE-2022-4183 | MEDIUM | 4.3 | 0.5% | Nov 30, 2022 | Insufficient policy enforcement in Popup Blocker in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to by... |
| CVE-2022-4182 | MEDIUM | 4.3 | 0.5% | Nov 30, 2022 | Inappropriate implementation in Fenced Frames in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to bypas... |
| CVE-2022-46155 | MEDIUM | 6.4 | 0.4% | Nov 29, 2022 | Airtable.js is the JavaScript client for Airtable. Prior to version 0.11.6, Airtable.js had a misconfigured build script... |
| CVE-2022-4036 | MEDIUM | 5.3 | 0.4% | Nov 29, 2022 | The Appointment Hour Booking plugin for WordPress is vulnerable to CAPTCHA bypass in versions up to, and including, 1.3.... |
| CVE-2022-4035 | MEDIUM | 6.1 | 0.7% | Nov 29, 2022 | The Appointment Hour Booking plugin for WordPress is vulnerable to iFrame Injection via the ‘email’ or general field par... |
| CVE-2022-4033 | MEDIUM | 5.3 | 0.7% | Nov 29, 2022 | The Quiz and Survey Master plugin for WordPress is vulnerable to input validation bypass via the 'question[id]' paramete... |
| CVE-2022-4032 | MEDIUM | 6.1 | 0.7% | Nov 29, 2022 | The Quiz and Survey Master plugin for WordPress is vulnerable to iFrame Injection via the 'question[id]' parameter in ve... |
| CVE-2022-4031 | MEDIUM | 4.9 | 0.7% | Nov 29, 2022 | The Simple:Press plugin for WordPress is vulnerable to arbitrary file modifications in versions up to, and including, 6.... |
| CVE-2022-4029 | MEDIUM | 4.7 | 0.6% | Nov 29, 2022 | The Simple:Press plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'sforum_[md5 hash of the W... |
| CVE-2022-4028 | MEDIUM | 5.4 | 0.5% | Nov 29, 2022 | The Simple:Press plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'postitem' parameter manipula... |
| CVE-2022-4027 | MEDIUM | 5.4 | 0.6% | Nov 29, 2022 | The Simple:Press plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'postitem' parameter manipula... |
| CVE-2022-3995 | MEDIUM | 4.3 | 0.6% | Nov 29, 2022 | The TeraWallet plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, ... |
| CVE-2022-3991 | MEDIUM | 5.4 | 0.6% | Nov 29, 2022 | The Photospace Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via its settings parameters sav... |
| CVE-2022-3898 | MEDIUM | 6.5 | 0.4% | Nov 29, 2022 | The WP Affiliate Platform plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ... |
| CVE-2022-3897 | MEDIUM | 4.8 | 0.5% | Nov 29, 2022 | The WP Affiliate Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in ve... |
| CVE-2022-3896 | MEDIUM | 6.1 | 0.6% | Nov 29, 2022 | The WP Affiliate Platform plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via $_SERVER["REQUEST_URI... |
| CVE-2022-3747 | MEDIUM | 6.5 | 0.8% | Nov 29, 2022 | The Becustom plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.5.2.... |
| CVE-2022-3361 | MEDIUM | 4.3 | 2.5% | Nov 29, 2022 | The Ultimate Member plugin for WordPress is vulnerable to directory traversal in versions up to, and including 2.5.0 due... |
| CVE-2022-44279 | MEDIUM | 6.1 | 0.6% | Nov 29, 2022 | Garage Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via /garage/php_action/createBrand.php. |
| CVE-2022-4172 | MEDIUM | 6.5 | 0.4% | Nov 29, 2022 | An integer overflow and buffer overflow issues were found in the ACPI Error Record Serialization Table (ERST) device of ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now