2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-50797 | MEDIUM | 6.4 | 0.4% | Feb 1, 2026 | Stripe Green Downloads Wordpress Plugin 2.03 contains a persistent cross-site scripting vulnerability allowing remote at... |
| CVE-2022-40620 | HIGH | 7.7 | 0.3% | Jan 28, 2026 | FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS ce... |
| CVE-2022-40619 | HIGH | 7.7 | 2.2% | Jan 28, 2026 | FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the L... |
| CVE-2022-25369 | CRITICAL | 9.8 | 40.7% | Jan 23, 2026 | An issue was discovered in Dynamicweb before 9.12.8. An attacker can add a new administrator user without authentication... |
| CVE-2022-43560 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-43559 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-43558 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-34214 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-32150 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-24911 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-24380 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-22147 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-21130 | — | — | — | Jan 22, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used. |
| CVE-2022-50939 | HIGH | 8.6 | 1.1% | Jan 13, 2026 | e107 CMS version 3.2.1 contains a critical file upload vulnerability that allows authenticated administrators to overrid... |
| CVE-2022-50938 | HIGH | 8.5 | 0.2% | Jan 13, 2026 | CONTPAQi AdminPAQ 14.0.0 contains an unquoted service path vulnerability in the AppKeyLicenseServer service running with... |
| CVE-2022-50937 | MEDIUM | 6.1 | 0.3% | Jan 13, 2026 | Ametys CMS v4.4.1 contains a persistent cross-site scripting vulnerability in the link directory's input fields for exte... |
| CVE-2022-50936 | HIGH | 8.8 | 0.8% | Jan 13, 2026 | WBCE CMS version 1.5.2 contains an authenticated remote code execution vulnerability that allows attackers to upload mal... |
| CVE-2022-50935 | CRITICAL | 9.8 | 0.4% | Jan 13, 2026 | Flame II HSPA USB Modem contains an unquoted service path vulnerability in its Windows service configuration. Attackers ... |
| CVE-2022-50934 | — | — | — | Jan 13, 2026 | Rejected reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. |
| CVE-2022-50933 | HIGH | 8.5 | 0.2% | Jan 13, 2026 | Cain & Abel 4.9.56 contains an unquoted service path vulnerability that allows local attackers to potentially execute ar... |
| CVE-2022-50932 | HIGH | 8.7 | 3.5% | Jan 13, 2026 | Kyocera Command Center RX ECOSYS M2035dn contains a directory traversal vulnerability that allows unauthenticated attack... |
| CVE-2022-50931 | HIGH | 8.5 | 0.2% | Jan 13, 2026 | TeamSpeak 3.5.6 contains an insecure file permissions vulnerability that allows local attackers to replace executable fi... |
| CVE-2022-50930 | HIGH | 8.5 | 0.1% | Jan 13, 2026 | Emerson PAC Machine Edition 9.80 contains an unquoted service path vulnerability in the TrapiServer service that allows ... |
| CVE-2022-50929 | HIGH | 8.5 | 0.2% | Jan 13, 2026 | Connectify Hotspot 2018 contains an unquoted service path vulnerability in its ConnectifyService executable that allows ... |
| CVE-2022-50928 | HIGH | 8.5 | 0.2% | Jan 13, 2026 | BlueSoleilCS 5.4.277 contains an unquoted service path vulnerability in its Windows service configuration that allows lo... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now