2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-46381MEDIUM6.1Certain Linear eMerge E3-Series devices are vulnerable to XSS via the type parameter (e.g., to the badging/badge_templat...
CVE-2022-43996MEDIUM5.4The csaf_provider package before 0.8.2 allows XSS via a crafted CSAF document uploaded as text/html. The endpoint upload...
CVE-2022-41653CRITICAL9.8Daikin SVMPC1 version 2.1.22 and prior and SVMPC2 version 1.2.3 and prior are vulnerable to an attacker obtaining user l...
CVE-2022-38355MEDIUM5.5Daikin SVMPC1 version 2.1.22 and prior and SVMPC2 version 1.2.3 and prior are vulnerable to attackers with access to t...
CVE-2022-2757CRITICAL9.1 Due to the lack of adequately implemented access-control rules, all versions Kingspan TMS300 CS are vulnerable to an ...
CVE-2022-2660HIGH7.5Delta Industrial Automation DIALink versions 1.4.0.0 and prior are vulnerable to the use of a hard-coded cryptographic k...
CVE-2022-4207MEDIUM5.4The Image Hover Effects Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several values th...
CVE-2022-4171HIGH7.5The demon image annotation plugin for WordPress is vulnerable to improper input validation in versions up to, and includ...
CVE-2022-46404CRITICAL9.8A command injection vulnerability has been identified in Atos Unify OpenScape 4000 Assistant and Unify OpenScape 4000 Ma...
CVE-2022-38628MEDIUM6.1Nortek Linear eMerge E3-Series 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e were discovered ...
CVE-2022-2951HIGH7.8 Altair HyperView Player versions 2021.1.0.27 and prior are vulnerable to improper validation of array index vulnerabi...
CVE-2022-2950HIGH7.8 Altair HyperView Player versions 2021.1.0.27 and prior are vulnerable to the use of uninitialized memory vulnerabilit...
CVE-2022-2949HIGH7.8 Altair HyperView Player versions 2021.1.0.27 and prior are vulnerable to the use of uninitialized memory vulnerabilit...
CVE-2022-2947HIGH7.8 Altair HyperView Player versions 2021.1.0.27 and prior perform operations on a memory buffer but can read from or wri...
CVE-2022-23499MEDIUM6.1HTML sanitizer is written in PHP, aiming to provide XSS-safe markup based on explicitly allowed tags, attributes and val...
CVE-2022-47213HIGH7.8Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-47212HIGH7.8Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-47211HIGH7.8Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-45005CRITICAL9.8IP-COM EW9 V15.11.0.14(9732) was discovered to contain a command injection vulnerability in the cmd_get_ping_output func...
CVE-2022-44713HIGH7.5Microsoft Outlook for Mac Spoofing Vulnerability
CVE-2022-44710HIGH7.8DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVE-2022-44708HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-44707MEDIUM6.5Windows Kernel Denial of Service Vulnerability
CVE-2022-44704HIGH7.8Microsoft Windows System Monitor (Sysmon) Elevation of Privilege Vulnerability
CVE-2022-44702HIGH7.8Windows Terminal Remote Code Execution Vulnerability

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now