2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-29511MEDIUM6.5A directory traversal vulnerability exists in the KnowledgebasePageActions.aspx ImportArticles functionality of Lansweep...
CVE-2022-28703MEDIUM5.4A stored cross-site scripting vulnerability exists in the HdConfigActions.aspx altertextlanguages functionality of Lansw...
CVE-2022-27498MEDIUM6.5A directory traversal vulnerability exists in the TicketTemplateActions.aspx GetTemplateAttachment functionality of Lans...
CVE-2022-46768MEDIUM5.9Arbitrary file read vulnerability exists in Zabbix Web Service Report Generation, which listens on the port 10053. The s...
CVE-2022-4506HIGH8.8Unrestricted Upload of File with Dangerous Type in GitHub repository openemr/openemr prior to 7.0.0.2.
CVE-2022-4505MEDIUM4.3Authorization Bypass Through User-Controlled Key in GitHub repository openemr/openemr prior to 7.0.0.2.
CVE-2022-4504HIGH7.5Improper Input Validation in GitHub repository openemr/openemr prior to 7.0.0.2.
CVE-2022-4503MEDIUM6.1Cross-site Scripting (XSS) - Generic in GitHub repository openemr/openemr prior to 7.0.0.2.
CVE-2022-4502MEDIUM6.1Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.0.2.
CVE-2022-4410MEDIUM5.4The Permalink Manager Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and incl...
CVE-2022-3917MEDIUM5.5Improper access control of bootloader function was discovered in Motorola Mobility Motorola e20 prior to version RONS31....
CVE-2022-4501MEDIUM6.5The Mega Addons plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the vc_s...
CVE-2022-4283HIGH7.8A vulnerability was found in X.Org. This security flaw occurs because the XkbCopyNames function left a dangling pointer ...
CVE-2022-47411HIGH7.5An issue was discovered in the fp_newsletter (aka Newsletter subscriber management) extension before 1.1.1, 1.2.0, 2.x b...
CVE-2022-47410HIGH7.5An issue was discovered in the fp_newsletter (aka Newsletter subscriber management) extension before 1.1.1, 1.2.0, 2.x b...
CVE-2022-47409HIGH7.5An issue was discovered in the fp_newsletter (aka Newsletter subscriber management) extension before 1.1.1, 1.2.0, 2.x b...
CVE-2022-47408CRITICAL9.1An issue was discovered in the fp_newsletter (aka Newsletter subscriber management) extension before 1.1.1, 1.2.0, 2.x b...
CVE-2022-47407MEDIUM6.5An issue was discovered in the fp_masterquiz (aka Master-Quiz) extension before 2.2.1, and 3.x before 3.5.1, for TYPO3. ...
CVE-2022-47406CRITICAL9.8An issue was discovered in the fe_change_pwd (aka Change password for frontend users) extension before 2.0.5, and 3.x be...
CVE-2022-46344HIGH8.8A vulnerability was found in X.Org. This security flaw occurs because the handler for the XIChangeProperty request has a...
CVE-2022-46343HIGH8.8A vulnerability was found in X.Org. This security flaw occurs because the handler for the ScreenSaverSetAttributes reque...
CVE-2022-46342HIGH8.8A vulnerability was found in X.Org. This security flaw occurs because the handler for the XvdiSelectVideoNotify request ...
CVE-2022-46341HIGH8.8A vulnerability was found in X.Org. This security flaw occurs because the handler for the XIPassiveUngrab request access...
CVE-2022-46340HIGH8.8A vulnerability was found in X.Org. This security flaw occurs becuase the swap handler for the XTestFakeInput request of...
CVE-2022-3115MEDIUM5.5An issue was discovered in the Linux kernel through 5.16-rc6. malidp_crtc_reset in drivers/gpu/drm/arm/malidp_crtc.c lac...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now