2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4988 | HIGH | 7.3 | 0.3% | May 11, 2026 | Alien::FreeImage versions through 1.001 for Perl contains several vulnerable libraries. Alien::FreeImage contains versi... |
| CVE-2022-50970 | MEDIUM | 5.4 | 0.2% | May 10, 2026 | WordPress Plugin AAWP 3.16 contains a reflected cross-site scripting vulnerability that allows authenticated attackers t... |
| CVE-2022-50969 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the backend/mailingLog/manage module. The d... |
| CVE-2022-50968 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the auctions/manage module. The date_create... |
| CVE-2022-50967 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the tickets/manage module. The date_created... |
| CVE-2022-50966 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the news/manage module. The date_created, d... |
| CVE-2022-50965 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the posts/manage module. The date_created, ... |
| CVE-2022-50964 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the auctions/myAuctions/status/loose module... |
| CVE-2022-50963 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the auctions/myAuctions/status/active modul... |
| CVE-2022-50962 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | uBidAuction 2.0.1 contains a reflected cross-site scripting vulnerability in the orders/myOrders module. The date_create... |
| CVE-2022-50961 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress Plugin IP2Location Country Blocker 2.26.7 contains a stored cross-site scripting vulnerability that allows aut... |
| CVE-2022-50960 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | WordPress International SMS for Contact Form 7 Integration version 1.2 contains a reflected cross-site scripting vulnera... |
| CVE-2022-50959 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | WordPress Contact Form Builder 1.6.1 contains a reflected cross-site scripting vulnerability that allows unauthenticated... |
| CVE-2022-50958 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | WordPress Plugin Jetpack 9.1 contains a reflected cross-site scripting vulnerability that allows unauthenticated attacke... |
| CVE-2022-50957 | MEDIUM | 6.1 | 0.2% | May 10, 2026 | Drupal avatar_uploader 7.x-1.0-beta8 contains a reflected cross-site scripting vulnerability that allows unauthenticated... |
| CVE-2022-50956 | MEDIUM | 6.9 | 0.2% | May 10, 2026 | WordPress Plugin amministrazione-aperta 3.7.3 contains a local file read vulnerability that allows unauthenticated attac... |
| CVE-2022-50955 | MEDIUM | 5.3 | 0.1% | May 10, 2026 | WordPress Plugin Curtain 1.0.2 contains a cross-site request forgery vulnerability that allows attackers to activate or ... |
| CVE-2022-50954 | MEDIUM | 6.9 | 0.4% | May 10, 2026 | WordPress Plugin cab-fare-calculator 1.0.3 contains a local file inclusion vulnerability that allows unauthenticated att... |
| CVE-2022-50949 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress Plugin Videos sync PDF 1.7.4 contains a stored cross-site scripting vulnerability that allows authenticated at... |
| CVE-2022-50948 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | Motopress Hotel Booking Lite 4.2.4 contains a stored cross-site scripting vulnerability that allows authenticated attack... |
| CVE-2022-50947 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress Plugin Testimonial Slider and Showcase 2.2.6 contains a stored cross-site scripting vulnerability that allows ... |
| CVE-2022-50946 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress Plugin Netroics Blog Posts Grid 1.0 contains a stored cross-site scripting vulnerability that allows authentic... |
| CVE-2022-50945 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress 3dady Real-Time Web Stats plugin 1.0 contains a stored cross-site scripting vulnerability that allows authenti... |
| CVE-2022-50944 | HIGH | 8.8 | 0.3% | May 10, 2026 | Aero CMS 0.0.1 contains a PHP code injection vulnerability that allows authenticated attackers to execute arbitrary PHP ... |
| CVE-2022-50943 | MEDIUM | 6.1 | 0.3% | May 10, 2026 | Moodle LMS 4.0 contains a cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious s... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now