2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-30197 | MEDIUM | 5.5 | 0.9% | Aug 9, 2022 | Windows Kernel Information Disclosure Vulnerability |
| CVE-2022-30134 | MEDIUM | 6.5 | 1.7% | Aug 9, 2022 | Microsoft Exchange Server Information Disclosure Vulnerability |
| CVE-2022-21979 | MEDIUM | 4.8 | 1.8% | Aug 9, 2022 | Microsoft Exchange Server Information Disclosure Vulnerability |
| CVE-2022-2734 | MEDIUM | 5.4 | 0.6% | Aug 9, 2022 | Improper Restriction of Rendered UI Layers or Frames in GitHub repository openemr/openemr prior to 7.0.0.1. |
| CVE-2022-2733 | MEDIUM | 6.1 | 95.8% | Aug 9, 2022 | Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.0.1. |
| CVE-2022-2731 | MEDIUM | 6.1 | 0.5% | Aug 9, 2022 | Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.0.1. |
| CVE-2022-2730 | MEDIUM | 6.5 | 0.6% | Aug 9, 2022 | Authorization Bypass Through User-Controlled Key in GitHub repository openemr/openemr prior to 7.0.0.1. |
| CVE-2022-2729 | MEDIUM | 5.4 | 0.4% | Aug 9, 2022 | Cross-site Scripting (XSS) - DOM in GitHub repository openemr/openemr prior to 7.0.0.1. |
| CVE-2022-2725 | MEDIUM | 6.1 | 0.4% | Aug 9, 2022 | A vulnerability was found in SourceCodester Company Website CMS. It has been rated as problematic. Affected by this issu... |
| CVE-2022-36266 | MEDIUM | 6.1 | 0.7% | Aug 8, 2022 | In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists a stored XSS vulnerability. As the binary file /home/ww... |
| CVE-2022-35493 | MEDIUM | 6.1 | 1.4% | Aug 8, 2022 | A Cross-site scripting (XSS) vulnerability in json search parse and the json response in wrteam.in, eShop - Multipurpose... |
| CVE-2022-35489 | MEDIUM | 6.5 | 0.6% | Aug 8, 2022 | In Zammad 5.2.0, customers who have secondary organizations assigned were able to see all organizations of the system ra... |
| CVE-2022-2426 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The Thinkific Uploader WordPress plugin through 1.0.0 does not sanitise and escape its settings, which could allow high ... |
| CVE-2022-2425 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The WP DS Blog Map WordPress plugin through 3.1.3 does not sanitise and escape some of its settings, which could allow h... |
| CVE-2022-2424 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The Google Maps Anywhere WordPress plugin through 1.2.6.3 does not sanitise and escape any of its settings, which could ... |
| CVE-2022-2423 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The DW Promobar WordPress plugin through 1.0.4 does not sanitise and escape some of its settings, which could allow high... |
| CVE-2022-2412 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The Better Tag Cloud WordPress plugin through 0.99.5 does not sanitise and escape some of its settings, which could allo... |
| CVE-2022-2411 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The Auto More Tag WordPress plugin through 4.0.0 does not sanitise and escape some of its settings, which could allow hi... |
| CVE-2022-2410 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The mTouch Quiz WordPress plugin through 3.1.3 does not sanitise and escape some of its settings, which could allow high... |
| CVE-2022-2409 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The Rough Chart WordPress plugin through 1.0.0 does not properly escape chart data label, which could allow high privile... |
| CVE-2022-2398 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The WordPress Comments Fields WordPress plugin before 4.1 does not escape Field Error Message, which could allow high-pr... |
| CVE-2022-2395 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The weForms WordPress plugin before 1.6.14 does not sanitise and escape its settings, allowing high privilege users such... |
| CVE-2022-2391 | MEDIUM | 5.4 | 0.5% | Aug 8, 2022 | The Inspiro PRO WordPress plugin does not sanitize the portfolio slider description, allowing users with privileges as l... |
| CVE-2022-2386 | MEDIUM | 6.1 | 0.5% | Aug 8, 2022 | The Crowdsignal Dashboard WordPress plugin before 3.0.8 does not sanitise and escape a parameter before outputting it ba... |
| CVE-2022-2372 | MEDIUM | 4.8 | 0.5% | Aug 8, 2022 | The YaySMTP WordPress plugin before 2.2.2 does not sanitise and escape some of its settings, which could allow high priv... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now