2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-2654MEDIUM6.1The Classima WordPress theme before 2.1.11 and some of its required plugins (Classified Listing before 2.2.14, Classifie...
CVE-2022-2635MEDIUM4.8The Autoptimize WordPress plugin before 3.1.1 does not sanitise and escape some of its settings, which could allow high ...
CVE-2022-2575MEDIUM4.8The WBW Currency Switcher for WooCommerce WordPress plugin before 1.6.6 does not sanitise and escape some of its setting...
CVE-2022-2351MEDIUM4.8The Post SMTP Mailer/Email Log WordPress plugin before 2.1.4 does not escape some of its settings before outputting them...
CVE-2022-25654MEDIUM6.7Memory corruption in kernel due to improper input validation while processing ION commands in Snapdragon Auto, Snapdrago...
CVE-2022-25653MEDIUM5.5Information disclosure in video due to buffer over-read while processing avi file in Snapdragon Compute, Snapdragon Conn...
CVE-2022-36533MEDIUM5.4Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain a cross-site scri...
CVE-2022-34002MEDIUM6.5The ‘document’ parameter of PDS Vista 7’s /application/documents/display.aspx page is vulnerable to a Local File Inclusi...
CVE-2022-39215MEDIUM5.8Tauri is a framework for building binaries for all major desktop platforms. Due to missing canonicalization when `readDi...
CVE-2022-36075MEDIUM4.3Nextcloud files access control is a nextcloud app to manage access control for files. Users with limited access can see ...
CVE-2022-27561MEDIUM4.8There is a reflected Cross-Site Scripting vulnerability in the HCL Traveler web admin (LotusTraveler.nsf).
CVE-2022-38334MEDIUM5.5XPDF v4.04 and earlier was discovered to contain a stack overflow via the function Catalog::countPageTree() at Catalog.c...
CVE-2022-38814MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in the auth_settings component of FiberHome AN5506-02-B vRP2521 allows...
CVE-2022-39209MEDIUM6.5cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. In versions prior to 0...
CVE-2022-38890MEDIUM5.5Nginx NJS v0.7.7 was discovered to contain a segmentation violation via njs_utf8_next at src/njs_utf8.h
CVE-2022-38851MEDIUM5.5Certain The MPlayer Project products are vulnerable to Out-of-bounds Read via function read_meta_record() of mplayer/lib...
CVE-2022-38850MEDIUM5.5The MPlayer Project mencoder SVN-r38374-13.0.1 is vulnerable to Divide By Zero via the function config () of llibmpcodec...
CVE-2022-38600MEDIUM5.5Mplayer SVN-r38374-13.0.1 is vulnerable to Memory Leak via vf.c and vf_vo.c.
CVE-2022-1798MEDIUM6.5A path traversal vulnerability in KubeVirt versions up to 0.56 (and 0.55.1) on all platforms allows a user able to confi...
CVE-2022-40306MEDIUM5.9The login form /Login in ECi Printanista Hub (formerly FMAudit Printscout) before 5.5.2 (July 2023) performs expensive R...
CVE-2022-38866MEDIUM5.5Certain The MPlayer Project products are vulnerable to Buffer Overflow via read_avi_header() of libmpdemux/aviheader.c ....
CVE-2022-38865MEDIUM5.5Certain The MPlayer Project products are vulnerable to Divide By Zero via the function demux_avi_read_packet of libmpdem...
CVE-2022-38864MEDIUM5.5Certain The MPlayer Project products are vulnerable to Buffer Overflow via the function mp_unescape03() of libmpdemux/mp...
CVE-2022-38863MEDIUM5.5Certain The MPlayer Project products are vulnerable to Buffer Overflow via function mp_getbits() of libmpdemux/mpeg_hdr....
CVE-2022-38861MEDIUM5.5The MPlayer Project mplayer SVN-r38374-13.0.1 is vulnerable to memory corruption via function free_mp_image() of libmpco...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now