2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-38131 | MEDIUM | 6.1 | 1.3% | Sep 6, 2022 | RStudio Connect prior to 2023.01.0 is affected by an Open Redirect issue. The vulnerability could allow an attacker to r... |
| CVE-2022-34867 | MEDIUM | 6.5 | 0.6% | Sep 6, 2022 | Unauthenticated Sensitive Information Disclosure vulnerability in WP Libre Form 2 plugin <= 2.0.8 at WordPress allows at... |
| CVE-2022-34656 | MEDIUM | 4.8 | 0.4% | Sep 6, 2022 | Authenticated (admin+) Cross-Site Scripting (XSS) vulnerability in wpdevart Poll, Survey, Questionnaire and Voting syste... |
| CVE-2022-33177 | MEDIUM | 4.3 | 0.3% | Sep 6, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in WPdevelop/Oplugins Booking Calendar plugin <= 9.2.1 at WordPress lead... |
| CVE-2022-2943 | MEDIUM | 4.9 | 1.3% | Sep 6, 2022 | The WordPress Infinite Scroll – Ajax Load More plugin for Wordpress is vulnerable to arbitrary file reading in versions ... |
| CVE-2022-2941 | MEDIUM | 4.8 | 5.1% | Sep 6, 2022 | The WP-UserOnline plugin for WordPress has multiple Stored Cross-Site Scripting vulnerabilities in versions up to, and i... |
| CVE-2022-2939 | MEDIUM | 5.3 | 0.7% | Sep 6, 2022 | The WP Cerber Security plugin for WordPress is vulnerable to security protection bypass in versions up to, and including... |
| CVE-2022-2936 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Image Hover Effects Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Video Link values... |
| CVE-2022-2935 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Image Hover Effects Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Media Image U... |
| CVE-2022-2934 | MEDIUM | 5.4 | 0.4% | Sep 6, 2022 | The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Image UR... |
| CVE-2022-2718 | MEDIUM | 4.9 | 1.1% | Sep 6, 2022 | The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to SQL Injection v... |
| CVE-2022-2717 | MEDIUM | 4.9 | 1.1% | Sep 6, 2022 | The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to SQL Injection v... |
| CVE-2022-2716 | MEDIUM | 5.4 | 0.4% | Sep 6, 2022 | The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Text Edi... |
| CVE-2022-2695 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'caption'... |
| CVE-2022-2518 | MEDIUM | 6.1 | 0.4% | Sep 6, 2022 | The Stockists Manager for Woocommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to... |
| CVE-2022-2517 | MEDIUM | 5.4 | 0.4% | Sep 6, 2022 | The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Caption ... |
| CVE-2022-2516 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Visual Composer Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the post/page ... |
| CVE-2022-2515 | MEDIUM | 5.4 | 0.8% | Sep 6, 2022 | The Simple Banner plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `pro_version_activation_code... |
| CVE-2022-2473 | MEDIUM | 4.8 | 0.9% | Sep 6, 2022 | The WP-UserOnline plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘templates[browsingpage][tex... |
| CVE-2022-2462 | MEDIUM | 5.3 | 2.9% | Sep 6, 2022 | The Transposh WordPress Translation plugin for WordPress is vulnerable to sensitive information disclosure to unauthenti... |
| CVE-2022-2461 | MEDIUM | 5.3 | 3.5% | Sep 6, 2022 | The Transposh WordPress Translation plugin for WordPress is vulnerable to unauthorized setting changes by unauthenticate... |
| CVE-2022-2432 | MEDIUM | 4.3 | 0.5% | Sep 6, 2022 | The Ecwid Ecommerce Shopping Cart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, an... |
| CVE-2022-2430 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Visual Composer Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Text Bloc... |
| CVE-2022-2402 | MEDIUM | 6.5 | 0.2% | Sep 6, 2022 | The vulnerability in the driver dlpfde.sys enables a user logged into the system to perform system calls leading to kern... |
| CVE-2022-29062 | MEDIUM | 6.5 | 0.7% | Sep 6, 2022 | Multiple relative path traversal vulnerabilities [CWE-23] in Fortinet FortiSOAR before 7.2.1 allows an authenticated att... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now