2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4325 | MEDIUM | 6.1 | 0.9% | Jan 9, 2023 | The Post Status Notifier Lite WordPress plugin before 1.10.1 does not sanitise and escape a parameter before outputting ... |
| CVE-2022-4310 | MEDIUM | 6.1 | 0.6% | Jan 9, 2023 | The Slimstat Analytics WordPress plugin before 4.9.3 does not sanitise and escape the URI when logging requests, which c... |
| CVE-2022-4301 | MEDIUM | 6.1 | 0.9% | Jan 9, 2023 | The Sunshine Photo Cart WordPress plugin before 2.9.15 does not sanitise and escape a parameter before outputting it bac... |
| CVE-2022-4196 | MEDIUM | 4.8 | 0.5% | Jan 9, 2023 | The Multi Step Form WordPress plugin before 1.7.8 does not sanitise and escape some of its form fields, which could allo... |
| CVE-2022-4103 | MEDIUM | 4.3 | 0.3% | Jan 9, 2023 | The Royal Elementor Addons WordPress plugin before 1.3.56 does not have authorisation and CSRF checks when creating a te... |
| CVE-2022-4102 | LOW | 3.1 | 0.3% | Jan 9, 2023 | The Royal Elementor Addons WordPress plugin before 1.3.56 does not have authorization and CSRF checks when deleting a te... |
| CVE-2022-4043 | HIGH | 7.2 | 17.7% | Jan 9, 2023 | The WP Custom Admin Interface WordPress plugin before 7.29 unserialize user input provided via the settings, which could... |
| CVE-2022-46603 | MEDIUM | 6.1 | 0.5% | Jan 9, 2023 | An issue in Inkdrop v5.4.1 allows attackers to execute arbitrary commands via uploading a crafted markdown file. |
| CVE-2022-3923 | MEDIUM | 4.3 | 0.5% | Jan 9, 2023 | The ActiveCampaign for WooCommerce WordPress plugin before 1.9.8 does not have authorisation check when cleaning up its ... |
| CVE-2022-3855 | MEDIUM | 4.8 | 0.5% | Jan 9, 2023 | The 404 to Start WordPress plugin through 1.6.1 does not sanitise and escape some of its settings, which could allow hig... |
| CVE-2022-3679 | HIGH | 8.8 | 0.9% | Jan 9, 2023 | The Starter Templates by Kadence WP WordPress plugin before 1.2.17 unserialises the content of an imported file, which c... |
| CVE-2022-3417 | HIGH | 8.8 | 0.9% | Jan 9, 2023 | The WPtouch WordPress plugin before 4.3.45 unserialises the content of an imported settings file, which could lead to PH... |
| CVE-2022-3416 | HIGH | 7.2 | 17.3% | Jan 9, 2023 | The WPtouch WordPress plugin before 4.3.45 does not properly validate images to be uploaded, allowing high privilege use... |
| CVE-2022-3343 | LOW | 3.5 | 0.5% | Jan 9, 2023 | The WPQA Builder WordPress plugin before 5.9.3 (which is a companion plugin used with Discy and Himer Discy WordPress th... |
| CVE-2022-43973 | HIGH | 7.2 | 1.9% | Jan 9, 2023 | An arbitrary code execution vulnerability exisits in Linksys WRT54GL Wireless-G Broadband Router with firmware <= 4.30.1... |
| CVE-2022-43972 | HIGH | 7.5 | 1.3% | Jan 9, 2023 | A null pointer dereference vulnerability exists in Linksys WRT54GL Wireless-G Broadband Router with firmware <= 4.30.18.... |
| CVE-2022-43971 | HIGH | 7.2 | 1.7% | Jan 9, 2023 | An arbitrary code exection vulnerability exists in Linksys WUMC710 Wireless-AC Universal Media Connector with firmware <... |
| CVE-2022-43970 | HIGH | 7.2 | 19.3% | Jan 9, 2023 | A buffer overflow vulnerability exists in Linksys WRT54GL Wireless-G Broadband Router with firmware <= 4.30.18.006. A st... |
| CVE-2022-36930 | HIGH | 7.8 | 0.5% | Jan 9, 2023 | Zoom Rooms for Windows installers before version 5.13.0 contain a local privilege escalation vulnerability. A local low-... |
| CVE-2022-36929 | HIGH | 7.8 | 0.3% | Jan 9, 2023 | The Zoom Rooms Installer for Windows prior to 5.12.6 contains a local privilege escalation vulnerability. A local low-pr... |
| CVE-2022-36928 | HIGH | 7.1 | 0.3% | Jan 9, 2023 | Zoom for Android clients before version 5.13.0 contain a path traversal vulnerability. A third party app could exploit t... |
| CVE-2022-36927 | HIGH | 7.8 | 0.2% | Jan 9, 2023 | Zoom Rooms for macOS clients before version 5.11.3 contain a local privilege escalation vulnerability. A local low-privi... |
| CVE-2022-36926 | HIGH | 7.8 | 0.4% | Jan 9, 2023 | Zoom Rooms for macOS clients before version 5.11.3 contain a local privilege escalation vulnerability. A local low-privi... |
| CVE-2022-36925 | HIGH | 7.8 | 0.1% | Jan 9, 2023 | Zoom Rooms for macOS clients before version 5.11.4 contain an insecure key generation mechanism. The encryption key used... |
| CVE-2022-4884 | MEDIUM | 4.9 | 0.5% | Jan 9, 2023 | Path-Traversal in MKP storing in Tribe29 Checkmk <=2.0.0p32 and <= 2.1.0p18 allows an administrator to write mkp files t... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now