2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-2654 | MEDIUM | 6.1 | 0.5% | Sep 16, 2022 | The Classima WordPress theme before 2.1.11 and some of its required plugins (Classified Listing before 2.2.14, Classifie... |
| CVE-2022-2635 | MEDIUM | 4.8 | 0.5% | Sep 16, 2022 | The Autoptimize WordPress plugin before 3.1.1 does not sanitise and escape some of its settings, which could allow high ... |
| CVE-2022-2575 | MEDIUM | 4.8 | 0.5% | Sep 16, 2022 | The WBW Currency Switcher for WooCommerce WordPress plugin before 1.6.6 does not sanitise and escape some of its setting... |
| CVE-2022-2351 | MEDIUM | 4.8 | 0.5% | Sep 16, 2022 | The Post SMTP Mailer/Email Log WordPress plugin before 2.1.4 does not escape some of its settings before outputting them... |
| CVE-2022-25654 | MEDIUM | 6.7 | 0.1% | Sep 16, 2022 | Memory corruption in kernel due to improper input validation while processing ION commands in Snapdragon Auto, Snapdrago... |
| CVE-2022-25653 | MEDIUM | 5.5 | 0.1% | Sep 16, 2022 | Information disclosure in video due to buffer over-read while processing avi file in Snapdragon Compute, Snapdragon Conn... |
| CVE-2022-36533 | MEDIUM | 5.4 | 42.6% | Sep 16, 2022 | Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain a cross-site scri... |
| CVE-2022-34002 | MEDIUM | 6.5 | 0.9% | Sep 16, 2022 | The ‘document’ parameter of PDS Vista 7’s /application/documents/display.aspx page is vulnerable to a Local File Inclusi... |
| CVE-2022-39215 | MEDIUM | 5.8 | 0.8% | Sep 15, 2022 | Tauri is a framework for building binaries for all major desktop platforms. Due to missing canonicalization when `readDi... |
| CVE-2022-36075 | MEDIUM | 4.3 | 0.4% | Sep 15, 2022 | Nextcloud files access control is a nextcloud app to manage access control for files. Users with limited access can see ... |
| CVE-2022-27561 | MEDIUM | 4.8 | 0.4% | Sep 15, 2022 | There is a reflected Cross-Site Scripting vulnerability in the HCL Traveler web admin (LotusTraveler.nsf). |
| CVE-2022-38334 | MEDIUM | 5.5 | 0.4% | Sep 15, 2022 | XPDF v4.04 and earlier was discovered to contain a stack overflow via the function Catalog::countPageTree() at Catalog.c... |
| CVE-2022-38814 | MEDIUM | 5.4 | 2.5% | Sep 15, 2022 | A stored cross-site scripting (XSS) vulnerability in the auth_settings component of FiberHome AN5506-02-B vRP2521 allows... |
| CVE-2022-39209 | MEDIUM | 6.5 | 1.6% | Sep 15, 2022 | cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. In versions prior to 0... |
| CVE-2022-38890 | MEDIUM | 5.5 | 0.3% | Sep 15, 2022 | Nginx NJS v0.7.7 was discovered to contain a segmentation violation via njs_utf8_next at src/njs_utf8.h |
| CVE-2022-38851 | MEDIUM | 5.5 | 0.3% | Sep 15, 2022 | Certain The MPlayer Project products are vulnerable to Out-of-bounds Read via function read_meta_record() of mplayer/lib... |
| CVE-2022-38850 | MEDIUM | 5.5 | 0.3% | Sep 15, 2022 | The MPlayer Project mencoder SVN-r38374-13.0.1 is vulnerable to Divide By Zero via the function config () of llibmpcodec... |
| CVE-2022-38600 | MEDIUM | 5.5 | 0.4% | Sep 15, 2022 | Mplayer SVN-r38374-13.0.1 is vulnerable to Memory Leak via vf.c and vf_vo.c. |
| CVE-2022-1798 | MEDIUM | 6.5 | 0.4% | Sep 15, 2022 | A path traversal vulnerability in KubeVirt versions up to 0.56 (and 0.55.1) on all platforms allows a user able to confi... |
| CVE-2022-40306 | MEDIUM | 5.9 | 1.0% | Sep 15, 2022 | The login form /Login in ECi Printanista Hub (formerly FMAudit Printscout) before 5.5.2 (July 2023) performs expensive R... |
| CVE-2022-38866 | MEDIUM | 5.5 | 0.3% | Sep 15, 2022 | Certain The MPlayer Project products are vulnerable to Buffer Overflow via read_avi_header() of libmpdemux/aviheader.c .... |
| CVE-2022-38865 | MEDIUM | 5.5 | 0.3% | Sep 15, 2022 | Certain The MPlayer Project products are vulnerable to Divide By Zero via the function demux_avi_read_packet of libmpdem... |
| CVE-2022-38864 | MEDIUM | 5.5 | 0.3% | Sep 15, 2022 | Certain The MPlayer Project products are vulnerable to Buffer Overflow via the function mp_unescape03() of libmpdemux/mp... |
| CVE-2022-38863 | MEDIUM | 5.5 | 0.3% | Sep 15, 2022 | Certain The MPlayer Project products are vulnerable to Buffer Overflow via function mp_getbits() of libmpdemux/mpeg_hdr.... |
| CVE-2022-38861 | MEDIUM | 5.5 | 0.3% | Sep 15, 2022 | The MPlayer Project mplayer SVN-r38374-13.0.1 is vulnerable to memory corruption via function free_mp_image() of libmpco... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now