2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4652 | MEDIUM | 5.4 | 0.5% | Mar 13, 2023 | The Video Background WordPress plugin before 2.7.5 does not validate and escape some of its shortcode attributes before ... |
| CVE-2022-4466 | MEDIUM | 5.4 | 0.5% | Mar 13, 2023 | The WordPress Infinite Scroll WordPress plugin before 5.6.0.3 does not validate and escape some of its shortcode attribu... |
| CVE-2022-38074 | HIGH | 8.8 | 0.7% | Mar 13, 2023 | SQL Injection vulnerability in VeronaLabs WP Statistics plugin <= 13.2.10 versions. |
| CVE-2022-31474 | HIGH | 7.5 | 63.8% | Mar 13, 2023 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in iThemes BackupBuddy allo... |
| CVE-2022-47440 | HIGH | 8.8 | 0.3% | Mar 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Joseph C Dolson My Tickets plugin <= 1.9.10 versions. |
| CVE-2022-47166 | HIGH | 8.8 | 0.3% | Mar 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in voidCoders Void Contact Form 7 Widget For Elementor Page Builder plug... |
| CVE-2022-2259 | MEDIUM | 4.3 | 0.4% | Mar 13, 2023 | In affected versions of Octopus Deploy it is possible for a user to view Workerpools without being explicitly assigned p... |
| CVE-2022-2258 | MEDIUM | 4.3 | 0.5% | Mar 13, 2023 | In affected versions of Octopus Deploy it is possible for a user to view Tagsets without being explicitly assigned permi... |
| CVE-2022-48367 | CRITICAL | 9.8 | 0.7% | Mar 12, 2023 | An issue was discovered in eZ Publish Ibexa Kernel before 7.5.28. Access control based on object state is mishandled. |
| CVE-2022-48366 | LOW | 3.7 | 0.5% | Mar 12, 2023 | An issue was discovered in eZ Platform Ibexa Kernel before 1.3.19. It allows determining account existence via a timing ... |
| CVE-2022-48365 | HIGH | 7.2 | 0.9% | Mar 12, 2023 | An issue was discovered in eZ Platform Ibexa Kernel before 1.3.26. The Company admin role gives excessive privileges. |
| CVE-2022-44574 | HIGH | 7.5 | 64.8% | Mar 10, 2023 | An improper authentication vulnerability exists in Avalanche version 6.3.x and below allows unauthenticated attacker to ... |
| CVE-2022-47484 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi... |
| CVE-2022-47483 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi... |
| CVE-2022-47482 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi... |
| CVE-2022-47481 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi... |
| CVE-2022-47480 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi... |
| CVE-2022-47479 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2022-47478 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2022-47477 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2022-47476 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2022-47475 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2022-47474 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2022-47473 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2022-47472 | MEDIUM | 5.5 | 0.1% | Mar 10, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now