2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-50797MEDIUM6.4Stripe Green Downloads Wordpress Plugin 2.03 contains a persistent cross-site scripting vulnerability allowing remote at...
CVE-2022-40620HIGH7.7FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS ce...
CVE-2022-40619HIGH7.7FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the L...
CVE-2022-25369CRITICAL9.8An issue was discovered in Dynamicweb before 9.12.8. An attacker can add a new administrator user without authentication...
CVE-2022-43560Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-43559Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-43558Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-34214Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-32150Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-24911Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-24380Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-22147Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-21130Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.
CVE-2022-50939HIGH8.6e107 CMS version 3.2.1 contains a critical file upload vulnerability that allows authenticated administrators to overrid...
CVE-2022-50938HIGH8.5CONTPAQi AdminPAQ 14.0.0 contains an unquoted service path vulnerability in the AppKeyLicenseServer service running with...
CVE-2022-50937MEDIUM6.1Ametys CMS v4.4.1 contains a persistent cross-site scripting vulnerability in the link directory's input fields for exte...
CVE-2022-50936HIGH8.8WBCE CMS version 1.5.2 contains an authenticated remote code execution vulnerability that allows attackers to upload mal...
CVE-2022-50935CRITICAL9.8Flame II HSPA USB Modem contains an unquoted service path vulnerability in its Windows service configuration. Attackers ...
CVE-2022-50934Rejected reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue.
CVE-2022-50933HIGH8.5Cain & Abel 4.9.56 contains an unquoted service path vulnerability that allows local attackers to potentially execute ar...
CVE-2022-50932HIGH8.7Kyocera Command Center RX ECOSYS M2035dn contains a directory traversal vulnerability that allows unauthenticated attack...
CVE-2022-50931HIGH8.5TeamSpeak 3.5.6 contains an insecure file permissions vulnerability that allows local attackers to replace executable fi...
CVE-2022-50930HIGH8.5Emerson PAC Machine Edition 9.80 contains an unquoted service path vulnerability in the TrapiServer service that allows ...
CVE-2022-50929HIGH8.5Connectify Hotspot 2018 contains an unquoted service path vulnerability in its ConnectifyService executable that allows ...
CVE-2022-50928HIGH8.5BlueSoleilCS 5.4.277 contains an unquoted service path vulnerability in its Windows service configuration that allows lo...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now