2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32622 | MEDIUM | 6.7 | 0.1% | Dec 5, 2022 | In gz, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privi... |
| CVE-2022-32621 | MEDIUM | 6.4 | 0.1% | Dec 5, 2022 | In isp, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privileg... |
| CVE-2022-32620 | MEDIUM | 6.7 | 0.1% | Dec 5, 2022 | In mpu, there is a possible memory corruption due to a logic error. This could lead to local escalation of privilege wit... |
| CVE-2022-32619 | MEDIUM | 6.7 | 0.1% | Dec 5, 2022 | In keyinstall, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escala... |
| CVE-2022-32598 | MEDIUM | 6.7 | 0.1% | Dec 5, 2022 | In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati... |
| CVE-2022-32597 | MEDIUM | 6.7 | 0.1% | Dec 5, 2022 | In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati... |
| CVE-2022-32596 | MEDIUM | 6.7 | 0.1% | Dec 5, 2022 | In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati... |
| CVE-2022-32594 | MEDIUM | 6.7 | 0.1% | Dec 5, 2022 | In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati... |
| CVE-2022-45046 | — | — | — | Dec 5, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2022-45824 | MEDIUM | 6.5 | 0.2% | Dec 5, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Advanced Booking Calendar plugin <= 1.7.1 on WordPress. |
| CVE-2022-45822 | CRITICAL | 9.8 | 0.7% | Dec 5, 2022 | Unauth. SQL Injection (SQLi) vulnerability in Advanced Booking Calendar plugin <= 1.7.1 on WordPress. |
| CVE-2022-4282 | HIGH | 7.2 | 0.7% | Dec 5, 2022 | A vulnerability was found in SpringBootCMS and classified as critical. Affected by this issue is some unknown functional... |
| CVE-2022-4281 | HIGH | 8.8 | 0.4% | Dec 5, 2022 | A vulnerability has been found in Facepay 1.0 and classified as critical. Affected by this vulnerability is an unknown f... |
| CVE-2022-43504 | MEDIUM | 5.3 | 1.4% | Dec 5, 2022 | Improper authentication vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to o... |
| CVE-2022-43500 | MEDIUM | 6.1 | 0.7% | Dec 5, 2022 | Cross-site scripting vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to inje... |
| CVE-2022-43499 | MEDIUM | 5.4 | 0.8% | Dec 5, 2022 | Stored cross-site scripting vulnerability in SHIRASAGI versions prior to v1.16.2 allows a remote authenticated attacker ... |
| CVE-2022-43497 | MEDIUM | 6.1 | 1.0% | Dec 5, 2022 | Cross-site scripting vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to inje... |
| CVE-2022-43487 | MEDIUM | 6.1 | 0.8% | Dec 5, 2022 | Cross-site scripting vulnerability in Salon booking system versions prior to 7.9 allows a remote unauthenticated attacke... |
| CVE-2022-43484 | HIGH | 7.8 | 0.4% | Dec 5, 2022 | TERASOLUNA Global Framework 1.0.0 (Public review version) and TERASOLUNA Server Framework for Java (Rich) 2.0.0.2 to 2.0... |
| CVE-2022-43479 | MEDIUM | 6.1 | 0.9% | Dec 5, 2022 | Open redirect vulnerability in SHIRASAGI v1.14.4 to v1.15.0 allows a remote unauthenticated attacker to redirect users t... |
| CVE-2022-43470 | HIGH | 7.3 | 0.2% | Dec 5, 2022 | Cross-site request forgery (CSRF) vulnerability in +F FS040U software versions v2.3.4 and earlier, +F FS020W software ve... |
| CVE-2022-43442 | MEDIUM | 4.6 | 0.3% | Dec 5, 2022 | Plaintext storage of a password vulnerability exists in +F FS040U software versions v2.3.4 and earlier, which may allow ... |
| CVE-2022-42496 | CRITICAL | 9.8 | 2.1% | Dec 5, 2022 | OS command injection vulnerability in Nako3edit, editor component of nadesiko3 (PC Version) v3.3.74 and earlier allows a... |
| CVE-2022-41830 | MEDIUM | 4.8 | 0.8% | Dec 5, 2022 | Stored cross-site scripting vulnerability in Kyocera Document Solutions MFPs and printers allows a remote authenticated ... |
| CVE-2022-41807 | MEDIUM | 6.5 | 0.5% | Dec 5, 2022 | Missing authorization vulnerability exists in Kyocera Document Solutions MFPs and printers, which may allow a network-ad... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now