2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-32824MEDIUM5.5The issue was addressed with improved memory handling. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadO...
CVE-2022-32784MEDIUM6.5The issue was addressed with improved UI handling. This issue is fixed in Safari 15.6, iOS 15.6 and iPadOS 15.6. Visitin...
CVE-2022-26760CRITICAL9.8A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 15.5 and iPadOS 15.5....
CVE-2022-22668MEDIUM5.5A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.4 and iPadOS 15.4, macOS Monterey ...
CVE-2022-22582MEDIUM5.5A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. T...
CVE-2022-48305MEDIUM5.5There is an identity authentication bypass vulnerability in Huawei Children Smart Watch (Simba-AL00) 1.1.1.274. Successf...
CVE-2022-48284CRITICAL9.8A piece of Huawei whole-home intelligence software has an Incorrect Privilege Assignment vulnerability. Successful explo...
CVE-2022-48283CRITICAL9.8A piece of Huawei whole-home intelligence software has an Incorrect Privilege Assignment vulnerability. Successful explo...
CVE-2022-48261HIGH7.5There is a misinterpretation of input vulnerability in BiSheng-WNM FW 3.0.0.325. Successful exploitation of this vulnera...
CVE-2022-48260HIGH7.5There is a buffer overflow vulnerability in BiSheng-WNM FW 3.0.0.325. Successful exploitation could lead to device servi...
CVE-2022-48259CRITICAL9.8There is a system command injection vulnerability in BiSheng-WNM FW 3.0.0.325. Successful exploitation could allow attac...
CVE-2022-48255CRITICAL9.8There is a system command injection vulnerability in BiSheng-WNM FW 3.0.0.325. A Huawei printer has a system command inj...
CVE-2022-48254MEDIUM4.6There is a data processing error vulnerability in Leia-B29 2.0.0.49(M03). Successful exploitation could bypass lock scre...
CVE-2022-48230HIGH7.5There is a misinterpretation of input vulnerability in BiSheng-WNM FW 3.0.0.325. Successful exploitation could lead to D...
CVE-2022-4829MEDIUM5.4The Show-Hide / Collapse-Expand WordPress plugin before 1.3.0 does not validate and escape some of its shortcode attribu...
CVE-2022-4795MEDIUM5.4The Galleries by Angie Makes WordPress plugin through 1.67 does not validate and escape some of its shortcode attributes...
CVE-2022-4788MEDIUM5.4The Embed PDF WordPress plugin through 1.0.6 does not validate and escape some of its shortcode attributes before output...
CVE-2022-4757MEDIUM5.4The List Pages Shortcode WordPress plugin before 1.7.6 does not validate and escape some of its shortcode attributes bef...
CVE-2022-4679MEDIUM5.4The Wufoo Shortcode WordPress plugin before 1.52 does not validate and escape some of its shortcode attributes before ou...
CVE-2022-4550HIGH7.5The User Activity WordPress plugin through 1.0.1 checks headers such as the X-Forwarded-For to retrieve the IP address o...
CVE-2022-45697HIGH7.8Arbitrary File Delete vulnerability in Razer Central before v7.8.0.381 when handling files in the Accounts directory.
CVE-2022-45140CRITICAL9.8The configuration backend allows an unauthenticated user to write arbitrary data with root privileges to the storage, wh...
CVE-2022-45139MEDIUM5.3A CORS Misconfiguration in the web-based management allows a malicious third party webserver to misuse all basic informa...
CVE-2022-45138CRITICAL9.8The configuration backend of the web-based management can be used by unauthenticated users, although only authenticated ...
CVE-2022-45137MEDIUM6.1The configuration backend of the web-based management is vulnerable to reflected XSS (Cross-Site Scripting) attacks that...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now