2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-47435MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Olive Design WP-OliveCart plugin <= 1.1.3 versions.
CVE-2022-45361MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Boris Kuzmanov 0mk Shortener plugin <= 0.2 versions.
CVE-2022-44743MEDIUM5.4Auth. (author+) Stored Cross-Site Scripting (XSS) vulnerability in BlueGlass Jobs for WordPress plugin <= 2.5.11.2 versi...
CVE-2022-44594MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Codebangers All in One Time Clock Lite plugin <= 1.3.3...
CVE-2022-44631MEDIUM5.4Auth. (author+) Stored Cross-Site Scripting (XSS) vulnerability in 1app Technologies, Inc 1app Business Forms plugin <= ...
CVE-2022-44582MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Apptivo Apptivo Business Site CRM plugin <= 3.0.12 ver...
CVE-2022-4944HIGH8.8A vulnerability, which was classified as problematic, has been found in kalcaddle KodExplorer up to 4.49. Affected by th...
CVE-2022-47509MEDIUM6.1The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a...
CVE-2022-47505HIGH7.8The SolarWinds Platform was susceptible to the Local Privilege Escalation Vulnerability. This vulnerability allows a loc...
CVE-2022-36963HIGH7.2The SolarWinds Platform was susceptible to the Command Injection Vulnerability. This vulnerability allows a remote adver...
CVE-2022-47930MEDIUM6.8An issue was discovered in IO FinNet tss-lib before 2.0.0. The parameter ssid for defining a session id is not used thro...
CVE-2022-48150MEDIUM6.1Shopware v5.5.10 was discovered to contain a cross-site scripting (XSS) vulnerability via the recovery/install/ URI.
CVE-2022-36788HIGH7.8A heap-based buffer overflow vulnerability exists in the TriangleMesh clone functionality of Slic3r libslic3r 1.3.0 and ...
CVE-2022-46302HIGH8.8Broad access controls could allow site users to directly interact with the system Apache installation when providing the...
CVE-2022-29944MEDIUM5.3An issue was discovered in ONOS 2.5.1. There is an incorrect comparison of paths installed by intents. An existing inten...
CVE-2022-29609MEDIUM5.3An issue was discovered in ONOS 2.5.1. An intent with the same source and destination shows the INSTALLING state, indica...
CVE-2022-29608HIGH7.5An issue was discovered in ONOS 2.5.1. An intent with a port that is an intermediate point of its path installs an inval...
CVE-2022-29607HIGH7.5An issue was discovered in ONOS 2.5.1. Modification of an existing intent to have the same source and destination shows ...
CVE-2022-29606CRITICAL9.8An issue was discovered in ONOS 2.5.1. An intent with a large port number shows the CORRUPT state, which is misleading t...
CVE-2022-29605HIGH7.5An issue was discovered in ONOS 2.5.1. IntentManager attempts to install the IPv6 flow rules of an intent into an OpenFl...
CVE-2022-29604CRITICAL9.8An issue was discovered in ONOS 2.5.1. An intent with an uppercase letter in a device ID shows the CORRUPT state, which ...
CVE-2022-24109MEDIUM6.5An issue was discovered in ONOS 2.5.1. To attack an intent installed by a normal user, a remote attacker can install a d...
CVE-2022-24035HIGH7.5An issue was discovered in ONOS 2.5.1. The purge-requested intent remains on the list, but it does not respond to change...
CVE-2022-4942MEDIUM6.1A vulnerability was found in mportuga eslint-detailed-reporter up to 0.9.0 and classified as problematic. Affected by th...
CVE-2022-2084MEDIUM5.5Sensitive data could be exposed in world readable logs of cloud-init before version 22.3 when schema failures are report...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now