2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-41616HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in Kaushik Kalathiya Export Users Data CSV.This ...
CVE-2022-38702HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in Nakashima Masahiro WP CSV Exporter.This issue...
CVE-2022-46821HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in Jackmail & Sarbacane Emails & Newsletters wit...
CVE-2022-46804HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in Narola Infotech Solutions LLP Export Users Da...
CVE-2022-45348HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in anmari amr users.This issue affects amr users...
CVE-2022-45078HIGH7.2Improper Neutralization of Formula Elements in a CSV File vulnerability in Solwin Infotech User Blocker.This issue affec...
CVE-2022-47442HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in AyeCode Ltd UsersWP.This issue affects UsersW...
CVE-2022-45350HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in Pär Thernström Simple History – user activity...
CVE-2022-48193HIGH7.5Weak ciphers in Softing smartLink SW-HT before 1.30 are enabled during secure communication (SSL).
CVE-2022-44569HIGH7.8A locally authenticated attacker with low privileges can bypass authentication due to insecure inter-process communicati...
CVE-2022-43555HIGH7.8Ivanti Avalanche Printer Device Service Missing Authentication Local Privilege Escalation Vulnerability
CVE-2022-43554HIGH7.8Ivanti Avalanche Smart Device Service Missing Authentication Local Privilege Escalation Vulnerability
CVE-2022-3172HIGH8.2A security issue was discovered in kube-apiserver that allows an aggregated API server to redirect client traffic to an...
CVE-2022-3007HIGH8.1The vulnerability exists in Syska SW100 Smartwatch due to an improper implementation and/or configuration of Nordic Devi...
CVE-2022-3702HIGH7.1 A denial of service vulnerability was reported in Lenovo Vantage HardwareScan Plugin version 1.3.0.5 and earlier that c...
CVE-2022-3701HIGH7.8 A privilege elevation vulnerability was reported in the Lenovo Vantage SystemUpdate plugin version 2.0.0.212 and earlie...
CVE-2022-3611HIGH7.5An information disclosure vulnerability has been identified in the Lenovo App Store which may allow some applications to...
CVE-2022-34886HIGH8.8A remote code execution vulnerability was found in the firmware used in some Lenovo printers, which can be caused by a r...
CVE-2022-3699HIGH7.8 A privilege escalation vulnerability was reported in the Lenovo HardwareScanPlugin prior to version 1.3.1.2 and Lenovo ...
CVE-2022-38484HIGH8.8An arbitrary file upload and directory traversal vulnerability exist in the file upload functionality of the System Setu...
CVE-2022-4290HIGH8.8The Cyr to Lat plugin for WordPress is vulnerable to authenticated SQL Injection via the 'ctl_sanitize_title' function i...
CVE-2022-3342HIGH8.8The Jetpack CRM plugin for WordPress is vulnerable to PHAR deserialization via the ‘zbscrmcsvimpf’ parameter in the 'zer...
CVE-2022-2441HIGH8.8The ImageMagick Engine plugin for WordPress is vulnerable to remote code execution via the 'cli_path' parameter in versi...
CVE-2022-27813HIGH8.2Motorola MTM5000 series firmwares lack properly configured memory protection of pages shared between the OMAP-L138 ARM a...
CVE-2022-26943HIGH8.8The Motorola MTM5000 series firmwares generate TETRA authentication challenges using a PRNG using a tick count register ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now