2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-27648HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of KOYO Screen Creator 0....
CVE-2022-27647HIGH8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R670...
CVE-2022-27646HIGH8.8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R670...
CVE-2022-27645HIGH8.8This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700...
CVE-2022-27644HIGH8.8This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected i...
CVE-2022-27643HIGH8.8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R670...
CVE-2022-27642HIGH8.8This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700...
CVE-2022-27641HIGH8.8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R670...
CVE-2022-48434HIGH8.1libavcodec/pthread_frame.c in FFmpeg before 5.1.2, as used in VLC and other products, leaves stale hwaccel state in work...
CVE-2022-47596MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Jeffrey-WP Media Library Categories plugin <= 1.9.9 ve...
CVE-2022-48433HIGH7.5In JetBrains IntelliJ IDEA before 2023.1 the NTLM hash could leak through an API method used in the IntelliJ IDEA built-...
CVE-2022-48432HIGH8.8In JetBrains IntelliJ IDEA before 2023.1 the bundled version of Chromium wasn't sandboxed.
CVE-2022-48431HIGH7.8In JetBrains IntelliJ IDEA before 2023.1 in some cases, Gradle and Maven projects could be imported without the “Trust P...
CVE-2022-48430HIGH7.5In JetBrains IntelliJ IDEA before 2023.1 file content could be disclosed via an external stylesheet path in Markdown pre...
CVE-2022-47444MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ProfilePress Membership Team Paid Membership Plugin, Ecomm...
CVE-2022-47438MEDIUM5.4Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in WpDevArt Booking calendar, Appointment Booking System...
CVE-2022-47433MEDIUM6.1Unauth. Reflected Cross-Site Scripting vulnerability in Daniel Powney Multi Rating plugin <= 5.0.5 versions.
CVE-2022-38077HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WP OnlineSupport, Essential Plugin Popup Anything – A Marketing Popup...
CVE-2022-27598LOW2.7A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability a...
CVE-2022-27597LOW2.7A vulnerability has been reported to affect QNAP operating systems. If exploited, the out-of-bounds read vulnerability a...
CVE-2022-46397HIGH7.5FP.io VPP (Vector Packet Processor) 22.10, 22.06, 22.02, 21.10, 21.06, 21.01, 20.09, 20.05, 20.01, 19.08, and 19.04 Gene...
CVE-2022-45460CRITICAL9.8Multiple Xiongmai NVR devices, including MBD6304T V4.02.R11.00000117.10001.131900.00000 and NBD6808T-PL V4.02.R11.C74311...
CVE-2022-36060MEDIUM5.3matrix-react-sdk is a Matrix chat protocol SDK for React Javascript. Events sent with special strings in key places can ...
CVE-2022-36059MEDIUM5.3matrix-js-sdk is a Matrix messaging protocol Client-Server SDK for JavaScript. In versions prior to 19.4.0 events sent w...
CVE-2022-46387CRITICAL9.8ConEmu through 220807 and Cmder before 1.3.21 report the title of the terminal, including control characters, which allo...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now