2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-38489MEDIUM5.4An issue was discovered in EasyVista 2020.2.125.3 and 2022.1.109.0.03 It is prone to stored Cross-site Scripting (XSS). ...
CVE-2022-38482MEDIUM4.3A link-manipulation issue was discovered in Mega HOPEX 15.2.0.6110 before V5CP4.
CVE-2022-38481MEDIUM6.1An issue was discovered in Mega HOPEX 15.2.0.6110 before V5CP2. The application is prone to reflected Cross-site Scripti...
CVE-2022-38393HIGH7.5A denial of service vulnerability exists in the cfg_server cm_processConnDiagPktList opcode of Asus RT-AX82U 3.0.0.4.386...
CVE-2022-38105HIGH7.5An information disclosure vulnerability exists in the cm_processREQ_NC opcode of Asus RT-AX82U 3.0.0.4.386_49674-ge18223...
CVE-2022-36443HIGH7.8An issue was discovered in Zebra Enterprise Home Screen 4.1.19. The device allows the administrator to lock some communi...
CVE-2022-36442MEDIUM5.5An issue was discovered in Zebra Enterprise Home Screen 4.1.19. By using the embedded Google Chrome application, it is p...
CVE-2022-36441HIGH7.1An issue was discovered in Zebra Enterprise Home Screen 4.1.19. The Gboard used by different applications can be used to...
CVE-2022-35401HIGH8.1An authentication bypass vulnerability exists in the get_IFTTTTtoken.cgi functionality of Asus RT-AX82U 3.0.0.4.386_4967...
CVE-2022-30332MEDIUM5.3In Talend Administration Center 7.3.1.20200219 before TAC-15950, the Forgot Password feature provides different error me...
CVE-2022-4636HIGH7.5Black Box KVM Firmware version 3.4.31307 on models ACR1000A-R-R2, ACR1000A-T-R2, ACR1002A-T, ACR1002A-R, and ACR1020A-T ...
CVE-2022-45614Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-4228. Reason: This candidate is a reservation du...
CVE-2022-4711MEDIUM4.3The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_save_mega_menu_...
CVE-2022-4710MEDIUM6.1The Royal Elementor Addons plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and i...
CVE-2022-4709MEDIUM6.5The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_import_library_...
CVE-2022-4708MEDIUM6.5The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_save_template_c...
CVE-2022-4707MEDIUM6.5The Royal Elementor Addons plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu...
CVE-2022-4705MEDIUM4.3The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_final_settings_...
CVE-2022-4704HIGH8.1The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_import_template...
CVE-2022-4703HIGH8.1The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_reset_previous_...
CVE-2022-4702MEDIUM6.5The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_fix_royal_compa...
CVE-2022-4701HIGH8.8The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_activate_requir...
CVE-2022-4700HIGH8.8The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_activate_requir...
CVE-2022-47083HIGH8.8A PHP Object Injection vulnerability in the unserialize() function Spitfire CMS v1.0.475 allows authenticated attackers ...
CVE-2022-4422CRITICAL9.8Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injectio...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now