2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-46610HIGH8.872crm v9 was discovered to contain an arbitrary file upload vulnerability via the avatar upload function. This vulnerabi...
CVE-2022-3792CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GullsEye GullsEye ...
CVE-2022-47967HIGH7.8A vulnerability has been identified in Solid Edge (All versions < V2023 MP1). The DOCMGMT.DLL contains a memory corrupti...
CVE-2022-47935HIGH7.8A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Soli...
CVE-2022-46823MEDIUM6.1A vulnerability has been identified in Mendix SAML (Mendix 8 compatible) (All versions >= V2.3.0 < V2.3.4), Mendix SAML ...
CVE-2022-45094HIGH8.8A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1). An authenticated remote attacker wi...
CVE-2022-45093HIGH8.8A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1). An authenticated remote attacker wi...
CVE-2022-45092HIGH8.8A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1). An authenticated remote attacker wi...
CVE-2022-43514CRITICAL9.8A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6 (All ...
CVE-2022-43513HIGH7.5A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6 (All ...
CVE-2022-38773MEDIUM6.8Affected devices do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on ...
CVE-2022-4429MEDIUM4.4Avira Security for Windows contains an unquoted service path which allows attackers with local administrative privileges...
CVE-2022-4294HIGH7.8Norton, Avira, Avast and AVG Antivirus for Windows may be susceptible to a Privilege Escalation vulnerability, which is ...
CVE-2022-48251HIGH7.5The AES instructions on the ARMv8 platform do not have an algorithm that is "intrinsically resistant" to side-channel at...
CVE-2022-4497MEDIUM5.4The Jetpack CRM WordPress plugin before 5.5 does not validate and escape some of its shortcode attributes before outputt...
CVE-2022-4491MEDIUM5.4The WP-Table Reloaded WordPress plugin through 1.9.4 does not validate and escapes some of its shortcode attributes befo...
CVE-2022-4479MEDIUM5.4The Table of Contents Plus WordPress plugin before 2212 does not validate and escape some of its shortcode attributes be...
CVE-2022-4468MEDIUM5.4The WP Recipe Maker WordPress plugin before 8.6.1 does not validate and escape some of its shortcode attributes before o...
CVE-2022-4426MEDIUM4.3The Mautic Integration for WooCommerce WordPress plugin before 1.0.3 does not have proper CSRF check when updating setti...
CVE-2022-4394MEDIUM5.4The iPages Flipbook For WordPress plugin through 1.4.6 does not sanitise and escape some of its settings, which could al...
CVE-2022-4393MEDIUM5.4The ImageLinks Interactive Image Builder for WordPress plugin through 1.5.3 does not sanitise and escape some of its set...
CVE-2022-4392MEDIUM5.4The iPanorama 360 WordPress Virtual Tour Builder plugin through 1.6.29 does not sanitise and escape some of its settings...
CVE-2022-4391MEDIUM5.4The Vision Interactive For WordPress plugin through 1.5.3 does not sanitise and escape some of its settings, which could...
CVE-2022-4374MEDIUM6.1The Bg Bible References WordPress plugin through 3.8.14 does not sanitize and escape a parameter before outputting it ba...
CVE-2022-4368MEDIUM6.1The WP CSV WordPress plugin through 1.8.0.0 does not sanitize and escape a parameter before outputting it back in the pa...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now