2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-33142 | MEDIUM | 6.5 | 0.9% | Aug 23, 2022 | Authenticated (subscriber+) Denial Of Service (DoS) vulnerability in WordPlus WordPress Better Messages plugin <= 1.9.10... |
| CVE-2022-2965 | MEDIUM | 4.3 | 0.6% | Aug 23, 2022 | Improper Restriction of Rendered UI Layers or Frames in GitHub repository notrinos/notrinoserp prior to 0.7. |
| CVE-2022-29476 | MEDIUM | 6.1 | 0.4% | Aug 23, 2022 | Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability in 8 Degree Themes otification Bar for WordPress plugin ... |
| CVE-2022-35278 | MEDIUM | 6.1 | 1.4% | Aug 23, 2022 | In Apache ActiveMQ Artemis prior to 2.24.0, an attacker could show malicious content and/or redirect users to a maliciou... |
| CVE-2022-2956 | MEDIUM | 6.1 | 0.5% | Aug 23, 2022 | A vulnerability classified as problematic has been found in ConsoleTVs Noxen. Affected is an unknown function of the fil... |
| CVE-2022-1989 | MEDIUM | 5.3 | 0.7% | Aug 23, 2022 | All CODESYS Visualization versions before V4.2.0.0 generate a login dialog vulnerable to information exposure allowing a... |
| CVE-2022-2796 | MEDIUM | 4.8 | 1.5% | Aug 23, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.4. |
| CVE-2022-36350 | MEDIUM | 5.4 | 0.5% | Aug 23, 2022 | Stored cross-site scripting vulnerability in PukiWiki versions 1.3.1 to 1.5.3 allows a remote attacker to inject an arbi... |
| CVE-2022-27637 | MEDIUM | 6.1 | 0.5% | Aug 23, 2022 | Reflected cross-site scripting vulnerability in PukiWiki versions 1.5.1 to 1.5.3 allows a remote attacker to inject an a... |
| CVE-2022-2829 | MEDIUM | 5.4 | 0.7% | Aug 23, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. |
| CVE-2022-35191 | MEDIUM | 6.5 | 1.4% | Aug 23, 2022 | D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to caus... |
| CVE-2022-2923 | MEDIUM | 5.5 | 0.5% | Aug 22, 2022 | NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240. |
| CVE-2022-32772 | MEDIUM | 6.1 | 3.0% | Aug 22, 2022 | A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master ... |
| CVE-2022-32771 | MEDIUM | 6.1 | 3.2% | Aug 22, 2022 | A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master ... |
| CVE-2022-32770 | MEDIUM | 6.1 | 3.4% | Aug 22, 2022 | A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master ... |
| CVE-2022-32769 | MEDIUM | 5 | 0.7% | Aug 22, 2022 | Multiple authentication bypass vulnerabilities exist in the objects id handling functionality of WWBN AVideo 11.6 and de... |
| CVE-2022-32768 | MEDIUM | 4.2 | 0.8% | Aug 22, 2022 | Multiple authentication bypass vulnerabilities exist in the objects id handling functionality of WWBN AVideo 11.6 and de... |
| CVE-2022-32761 | MEDIUM | 6.5 | 2.4% | Aug 22, 2022 | An information disclosure vulnerability exists in the aVideoEncoderReceiveImage functionality of WWBN AVideo 11.6 and de... |
| CVE-2022-30690 | MEDIUM | 6.1 | 83.6% | Aug 22, 2022 | A cross-site scripting (xss) vulnerability exists in the image403 functionality of WWBN AVideo 11.6 and dev master commi... |
| CVE-2022-28710 | MEDIUM | 6.5 | 2.3% | Aug 22, 2022 | An information disclosure vulnerability exists in the chunkFile functionality of WWBN AVideo 11.6 and dev master commit ... |
| CVE-2022-33932 | MEDIUM | 5.3 | 0.7% | Aug 22, 2022 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an unprotect... |
| CVE-2022-32480 | MEDIUM | 6.5 | 0.7% | Aug 22, 2022 | Dell PowerScale OneFS, versions 9.0.0, up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an insecure... |
| CVE-2022-31238 | MEDIUM | 5.5 | 0.2% | Aug 22, 2022 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain a process in... |
| CVE-2022-28598 | MEDIUM | 6.1 | 5.0% | Aug 22, 2022 | Frappe ERPNext 12.29.0 is vulnerable to XSS where the software does not neutralize or incorrectly neutralize user-contro... |
| CVE-2022-35656 | MEDIUM | 4.5 | 0.3% | Aug 22, 2022 | Pega Platform from 8.3 to 8.7.3 vulnerability may allow authenticated security administrators to alter CSRF settings dir... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now