2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-26117HIGH8.8An empty password in configuration file vulnerability [CWE-258] in FortiNAC version 8.3.7 and below, 8.5.2 and below, 8....
CVE-2022-32387HIGH7.5In Kentico before 13.0.66, attackers can achieve Denial of Service via a crafted request to the GetResource handler.
CVE-2022-2444HIGH8.8The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to deserialization of untrust...
CVE-2022-2443HIGH8.8The FreeMind WP Browser plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin...
CVE-2022-2435HIGH8.8The AnyMind Widget plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including 1.1...
CVE-2022-2039HIGH8.8The Free Live Chat Support plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu...
CVE-2022-2001HIGH8.8The DX Share Selection plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including...
CVE-2022-23745HIGH7.5A potential memory corruption issue was found in Capsule Workspace Android app (running on GrapheneOS). This could resul...
CVE-2022-1912HIGH8.8The Button Widget Smartsoft plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and incl...
CVE-2022-1565HIGH7.2The plugin WP All Import is vulnerable to arbitrary file uploads due to missing file type validation via the wp_all_impo...
CVE-2022-34902HIGH7.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.4 (39...
CVE-2022-34901HIGH7.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.4 (39...
CVE-2022-34900HIGH7.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.3 (39...
CVE-2022-34899HIGH7.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.4 (39...
CVE-2022-34892HIGH7.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallel...
CVE-2022-34891HIGH7.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallel...
CVE-2022-34890HIGH8.8This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt...
CVE-2022-34889HIGH8.2This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 17.1.1 (...
CVE-2022-35404HIGH8.2ManageEngine Password Manager Pro 12100 and prior and OPManager 126100 and prior are vulnerable to unauthorized file and...
CVE-2022-32450HIGH7.1AnyDesk 7.0.9 allows a local user to gain SYSTEM privileges via a symbolic link because the user can write to their own ...
CVE-2022-30627HIGH7.5This vulnerability affects all of the company's products that also include the FW versions: update_i90_cv2.021_b20210104...
CVE-2022-30626HIGH7.5Browsing the path: http://ip/wifi_ap_pata_get.cmd, will show in the name of the existing access point on the component, ...
CVE-2022-30624HIGH7.5Browsing the admin.html page allows the user to reset the admin password. Also appears in the JS code for the password.
CVE-2022-30620HIGH8.8On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" priv...
CVE-2022-24691HIGH7.1An issue was discovered in DSK DSKNet 2.16.136.0 and 2.17.136.5. A SQL Injection vulnerability allows authenticated user...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now