2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-3856HIGH7.2The Comic Book Management System WordPress plugin before 2.2.0 does not sanitize and escape a parameter before using it ...
CVE-2022-3846HIGH7.5The Workreap WordPress theme before 2.6.3 has a vulnerability with the notifications feature as it's possible to read an...
CVE-2022-3838MEDIUM4.8The WPUpper Share Buttons WordPress plugin through 3.42 does not sanitise and escape some of its settings, which could a...
CVE-2022-3837MEDIUM4.8The Uji Countdown WordPress plugin before 2.3.1 does not sanitise and escape some of its settings, which could allow hig...
CVE-2022-3830MEDIUM4.8The WP Page Builder WordPress plugin through 1.2.8 does not sanitise and escape some of its settings, which could allow ...
CVE-2022-3694HIGH7.5The Syncee WordPress plugin before 1.0.10 leaks the administrator token that can be used to take over the administrator'...
CVE-2022-3677MEDIUM6.5The Advanced Import WordPress plugin before 1.3.8 does not have CSRF check when installing and activating plugins, which...
CVE-2022-3426MEDIUM4.8The Advanced WP Columns WordPress plugin through 2.0.6 does not sanitise and escape some of its settings, which could al...
CVE-2022-3249HIGH7.2The WP CSV Exporter WordPress plugin before 1.3.7 does not properly sanitise and escape some parameters before using the...
CVE-2022-1540HIGH7.2The PostmagThemes Demo Import WordPress plugin through 1.0.7 does not validate the imported file, allowing high-privileg...
CVE-2022-4269MEDIUM5.5A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirect...
CVE-2022-45478MEDIUM5.9Telepad allows an attacker (in a man-in-the-middle position between the server and a connected device) to see all data (...
CVE-2022-45477CRITICAL9.8Telepad allows remote unauthenticated users to send instructions to the server to execute arbitrary code without any pre...
CVE-2022-45315CRITICAL9.8Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds read in the snmp process. This vulnerabi...
CVE-2022-45313HIGH8.8Mikrotik RouterOs before stable v7.5 was discovered to contain an out-of-bounds read in the hotspot process. This vulner...
CVE-2022-32634MEDIUM6.7In ccci, there is a possible out of bounds write due to improper input validation. This could lead to local escalation o...
CVE-2022-32633MEDIUM6.7In Wi-Fi, there is a possible memory access violation due to a logic error. This could lead to local escalation of privi...
CVE-2022-32632MEDIUM6.7In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead to local escalation ...
CVE-2022-32631MEDIUM6.7In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could lead to local escalation ...
CVE-2022-32630MEDIUM6.7In throttling, there is a possible out of bounds write due to an incorrect calculation of buffer size. This could lead t...
CVE-2022-32629MEDIUM6.7In isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr...
CVE-2022-32628MEDIUM6.7In isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr...
CVE-2022-32626MEDIUM6.7In display, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalatio...
CVE-2022-32625MEDIUM6.7In display, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalatio...
CVE-2022-32624MEDIUM6.7In throttling, there is a possible out of bounds write due to an incorrect calculation of buffer size. This could lead t...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now