2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32471 | HIGH | 7 | 0.1% | Feb 15, 2023 | An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. The IhisiDxe driver uses the comman... |
| CVE-2022-29557 | HIGH | 8.8 | 0.3% | Feb 15, 2023 | LexisNexis Firco Compliance Link 3.7 allows CSRF. |
| CVE-2022-41564 | MEDIUM | 6.5 | 0.5% | Feb 14, 2023 | The Hawk Console component of TIBCO Software Inc.'s TIBCO Hawk and TIBCO Operational Intelligence Hawk RedTail contains ... |
| CVE-2022-22564 | MEDIUM | 5.9 | 0.5% | Feb 14, 2023 | Dell EMC Unity versions before 5.2.0.0.5.173 , use(es) broken cryptographic algorithm. A remote unauthenticated attacker... |
| CVE-2022-4286 | MEDIUM | 6.1 | 0.6% | Feb 14, 2023 | A reflected cross-site scripting (XSS) vulnerability exists in System Diagnostics Manager of B&R Automation Runtime ver... |
| CVE-2022-46862 | HIGH | 8.8 | 0.4% | Feb 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in ExpressTech Quiz And Survey Master – Best Quiz, Exam and Survey Plugi... |
| CVE-2022-47977 | HIGH | 7.8 | 0.2% | Feb 14, 2023 | A vulnerability has been identified in JT Open (All versions < V11.2.3.0), JT Utilities (All versions < V13.2.3.0). The ... |
| CVE-2022-47936 | HIGH | 7.8 | 0.2% | Feb 14, 2023 | A vulnerability has been identified in JT Open (All versions < V11.2.3.0), JT Utilities (All versions < V13.2.3.0), Para... |
| CVE-2022-35868 | MEDIUM | 6.7 | 0.2% | Feb 14, 2023 | A vulnerability has been identified in TIA Multiuser Server V14 (All versions), TIA Multiuser Server V15 (All versions <... |
| CVE-2022-31808 | HIGH | 7.8 | 0.2% | Feb 14, 2023 | A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V2.85.44), SiPass integrated AC... |
| CVE-2022-43469 | HIGH | 8.8 | 0.3% | Feb 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Orchestrated Corona Virus (COVID-19) Banner & Live Data plugin <= 1.7... |
| CVE-2022-4138 | HIGH | 8.1 | 0.4% | Feb 13, 2023 | A Cross Site Request Forgery issue has been discovered in GitLab CE/EE affecting all versions before 15.6.7, all version... |
| CVE-2022-3759 | HIGH | 7.5 | 1.2% | Feb 13, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.3 before 15.6.7, all versions start... |
| CVE-2022-3411 | MEDIUM | 6.5 | 1.2% | Feb 13, 2023 | A lack of length validation in GitLab CE/EE affecting all versions from 12.4 before 15.6.7, 15.7 before 15.7.6, and 15.8... |
| CVE-2022-47034 | CRITICAL | 9.8 | 0.8% | Feb 13, 2023 | A type juggling vulnerability in the component /auth/fn.php of PlaySMS v1.4.5 and earlier allows attackers to bypass aut... |
| CVE-2022-4905 | MEDIUM | 6.1 | 0.7% | Feb 13, 2023 | A vulnerability was found in UDX Stateless Media Plugin 3.1.1 on WordPress. It has been declared as problematic. This vu... |
| CVE-2022-45962 | MEDIUM | 6.5 | 0.9% | Feb 13, 2023 | Open Solutions for Education, Inc openSIS Community Edition v8.0 and earlier is vulnerable to SQL Injection via Calendar... |
| CVE-2022-48110 | MEDIUM | 6.1 | 2.1% | Feb 13, 2023 | CKSource CKEditor 5 35.4.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Full Featured CK... |
| CVE-2022-45285 | MEDIUM | 6.1 | 0.5% | Feb 13, 2023 | Vsourz Digital Advanced Contact form 7 DB Versions 1.7.2 and 1.9.1 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2022-48077 | HIGH | 7.8 | 0.3% | Feb 13, 2023 | Genymotion Desktop v3.3.2 was discovered to contain a DLL hijacking vulnerability that allows attackers to escalate priv... |
| CVE-2022-41134 | HIGH | 8.8 | 0.3% | Feb 13, 2023 | Cross-Site Request Forgery (CSRF) in OptinlyHQ Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms plu... |
| CVE-2022-3089 | CRITICAL | 9.8 | 0.3% | Feb 13, 2023 | Echelon SmartServer 2.2 with i.LON Vision 2.2 stores cleartext credentials in a file, which could allow an attacker... |
| CVE-2022-4830 | MEDIUM | 5.4 | 65.0% | Feb 13, 2023 | The Paid Memberships Pro WordPress plugin before 2.9.9 does not validate and escape some of its shortcode attributes bef... |
| CVE-2022-4783 | MEDIUM | 5.4 | 0.5% | Feb 13, 2023 | The Youtube Channel Gallery WordPress plugin through 2.4 does not validate and escape some of its shortcode attributes b... |
| CVE-2022-4759 | MEDIUM | 5.4 | 0.7% | Feb 13, 2023 | The GigPress WordPress plugin before 2.3.28 does not validate and escape some of its shortcode attributes before outputt... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now