2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-34574MEDIUM5.7An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the key info...
CVE-2022-34573MEDIUM6.3An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to arbitrarily configu...
CVE-2022-34572MEDIUM5.7An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the telnet p...
CVE-2022-22999MEDIUM4.8Western Digital My Cloud devices are vulnerable to a cross side scripting vulnerability that can allow a malicious user ...
CVE-2022-35288MEDIUM6.5IBM Security Verify Information Queue 10.0.2 could allow a user to obtain sensitive information that could be used in fu...
CVE-2022-34962MEDIUM5.4OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vu...
CVE-2022-2059MEDIUM4.8In Pandora FMS v7.0NG.761 and below, in the agent creation section, the alias parameter is vulnerable to a Stored Cross ...
CVE-2022-2032MEDIUM4.8In Pandora FMS v7.0NG.761 and below, in the file manager section, the dirname parameter is vulnerable to a Stored Cross ...
CVE-2022-35653MEDIUM6.1A reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitizat...
CVE-2022-35652MEDIUM6.1An open redirect issue was found in Moodle due to improper sanitization of user-supplied data in mobile auto-login featu...
CVE-2022-35651MEDIUM6.1A stored XSS and blind SSRF vulnerability was found in Moodle, occurs due to insufficient sanitization of user-supplied ...
CVE-2022-34964MEDIUM4.8OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vu...
CVE-2022-34963MEDIUM5.4OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vu...
CVE-2022-34961MEDIUM5.4OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vu...
CVE-2022-2523MEDIUM6.1Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.2.
CVE-2022-2514MEDIUM6.1The time and filter parameters in Fava prior to v1.22 are vulnerable to reflected XSS due to the lack of escaping of err...
CVE-2022-21802MEDIUM6.1The package grapesjs before 0.19.5 are vulnerable to Cross-site Scripting (XSS) due to an improper sanitization of the c...
CVE-2022-1307MEDIUM4.3Inappropriate implementation in full screen in Google Chrome on Android prior to 100.0.4896.88 allowed a remote attacker...
CVE-2022-1306MEDIUM4.3Inappropriate implementation in compositing in Google Chrome prior to 100.0.4896.88 allowed a remote attacker to spoof t...
CVE-2022-2341MEDIUM4.8The Simple Page Transition WordPress plugin through 1.4.1 does not sanitise and escape some of its settings, which could...
CVE-2022-2340MEDIUM4.8The W-DALIL WordPress plugin through 2.0 does not sanitise and escape some of its fields, which could allow high privile...
CVE-2022-2299MEDIUM5.4The Allow SVG Files WordPress plugin through 1.1 does not sanitise uploaded SVG files, which could allow users with a ro...
CVE-2022-2239MEDIUM4.8The Request a Quote WordPress plugin before 2.3.9 does not sanitise and escape some of its settings, allowing high privi...
CVE-2022-2189MEDIUM6.1The WP Video Lightbox WordPress plugin before 1.9.5 does not escape the $_SERVER['REQUEST_URI'] parameter before outputt...
CVE-2022-2115MEDIUM6.1The Popup Anything WordPress plugin before 2.1.7 does not sanitise and escape a parameter before outputting it back in a...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now