2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-32622MEDIUM6.7In gz, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privi...
CVE-2022-32621MEDIUM6.4In isp, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privileg...
CVE-2022-32620MEDIUM6.7In mpu, there is a possible memory corruption due to a logic error. This could lead to local escalation of privilege wit...
CVE-2022-32619MEDIUM6.7In keyinstall, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escala...
CVE-2022-32598MEDIUM6.7In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati...
CVE-2022-32597MEDIUM6.7In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati...
CVE-2022-32596MEDIUM6.7In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati...
CVE-2022-32594MEDIUM6.7In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati...
CVE-2022-45046Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-45824MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in Advanced Booking Calendar plugin <= 1.7.1 on WordPress.
CVE-2022-45822CRITICAL9.8Unauth. SQL Injection (SQLi) vulnerability in Advanced Booking Calendar plugin <= 1.7.1 on WordPress.
CVE-2022-4282HIGH7.2A vulnerability was found in SpringBootCMS and classified as critical. Affected by this issue is some unknown functional...
CVE-2022-4281HIGH8.8A vulnerability has been found in Facepay 1.0 and classified as critical. Affected by this vulnerability is an unknown f...
CVE-2022-43504MEDIUM5.3Improper authentication vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to o...
CVE-2022-43500MEDIUM6.1Cross-site scripting vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to inje...
CVE-2022-43499MEDIUM5.4Stored cross-site scripting vulnerability in SHIRASAGI versions prior to v1.16.2 allows a remote authenticated attacker ...
CVE-2022-43497MEDIUM6.1Cross-site scripting vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to inje...
CVE-2022-43487MEDIUM6.1Cross-site scripting vulnerability in Salon booking system versions prior to 7.9 allows a remote unauthenticated attacke...
CVE-2022-43484HIGH7.8TERASOLUNA Global Framework 1.0.0 (Public review version) and TERASOLUNA Server Framework for Java (Rich) 2.0.0.2 to 2.0...
CVE-2022-43479MEDIUM6.1Open redirect vulnerability in SHIRASAGI v1.14.4 to v1.15.0 allows a remote unauthenticated attacker to redirect users t...
CVE-2022-43470HIGH7.3Cross-site request forgery (CSRF) vulnerability in +F FS040U software versions v2.3.4 and earlier, +F FS020W software ve...
CVE-2022-43442MEDIUM4.6Plaintext storage of a password vulnerability exists in +F FS040U software versions v2.3.4 and earlier, which may allow ...
CVE-2022-42496CRITICAL9.8OS command injection vulnerability in Nako3edit, editor component of nadesiko3 (PC Version) v3.3.74 and earlier allows a...
CVE-2022-41830MEDIUM4.8Stored cross-site scripting vulnerability in Kyocera Document Solutions MFPs and printers allows a remote authenticated ...
CVE-2022-41807MEDIUM6.5Missing authorization vulnerability exists in Kyocera Document Solutions MFPs and printers, which may allow a network-ad...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now