2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-32599MEDIUM6.7In rpmb, there is a possible out of bounds write due to a logic error. This could lead to local escalation of privilege ...
CVE-2022-46781LOW3.3An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU memory processing...
CVE-2022-46793HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in AdTribes.Io Product Feed PRO for WooCommerce plugin <= 12.4.4 version...
CVE-2022-31890CRITICAL9.8SQL Injection vulnerability in audit/class.audit.php in osTicket osTicket-plugins before commit a7842d494889fd5533d13deb...
CVE-2022-31889MEDIUM6.1Cross Site Scripting (XSS) vulnerability in audit/templates/auditlogs.tmpl.php in osTicket osTicket-plugins before commi...
CVE-2022-31888HIGH8.8Session Fixation vulnerability in in function login in class.auth.php in osTicket through 1.16.2.
CVE-2022-3513MEDIUM6.1An issue has been discovered in GitLab affecting all versions starting from 12.8 before 15.8.5, all versions starting fr...
CVE-2022-3375LOW3.7An issue has been discovered in GitLab affecting all versions starting from 11.10 before 15.8.5, all versions starting f...
CVE-2022-4941HIGH8.8The WCFM Membership plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2...
CVE-2022-4940MEDIUM6.5The WCFM Membership plugin for WordPress is vulnerable to unauthorized modification and access of data in versions up to...
CVE-2022-4939CRITICAL9.8THe WCFM Membership plugin for WordPress is vulnerable to privilege escalation in versions up to, and including 2.10.0, ...
CVE-2022-4938HIGH8.8The WCFM Frontend Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2022-4937HIGH8.8The WCFM Frontend Manager plugin for WordPress is vulnerable to unauthorized modification and access of data in versions...
CVE-2022-4936HIGH8.8The WCFM Marketplace plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2022-4935HIGH8.8The WCFM Marketplace plugin for WordPress is vulnerable to unauthorized modification and access of data in versions up t...
CVE-2022-45115HIGH7.8A buffer overflow vulnerability exists in the Attribute Arena functionality of Ichitaro 2022 1.0.1.57600. A specially cr...
CVE-2022-43664HIGH7.8A use-after-free vulnerability exists within the way Ichitaro Word Processor 2022, version 1.0.1.57600, processes protec...
CVE-2022-48227HIGH7.8An issue was discovered in Acuant AsureID Sentinel before 5.2.149. It allows elevation of privileges because it opens No...
CVE-2022-48224HIGH7.3An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. It is installed with insecure permissions (full write ...
CVE-2022-48223MEDIUM6.7An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. During SDK repair, certutil.exe is called by the Acuan...
CVE-2022-48222HIGH7.8An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. During SDK installation, certutil.exe is called by the...
CVE-2022-48228MEDIUM5.5An issue was discovered in Acuant AsureID Sentinel before 5.2.149. It uses the root of the C: drive for the i-Dentify an...
CVE-2022-48226HIGH7.8An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. During installation, an EXE gets executed out of C:\Wi...
CVE-2022-48225HIGH7.3An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. It is used to install drivers from several different v...
CVE-2022-48221HIGH7.5An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. Multiple MSI's get executed out of a standard-user wri...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now