2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-41938MEDIUM5.4Flarum is an open source discussion platform. Flarum's page title system allowed for page titles to be converted into HT...
CVE-2022-4055HIGH7.4When xdg-mail is configured to use thunderbird for mailto URLs, improper parsing of the URL can lead to additional heade...
CVE-2022-41609HIGH8.8Auth. (subscriber+) Server-Side Request Forgery (SSRF) vulnerability in Better Messages plugin 1.9.10.68 on WordPress.
CVE-2022-41155CRITICAL9.8Block BYPASS vulnerability in iQ Block Country plugin <= 1.2.18 on WordPress.
CVE-2022-34667MEDIUM4.4NVIDIA CUDA Toolkit SDK contains a stack-based buffer overflow vulnerability in cuobjdump, where an unprivileged remote ...
CVE-2022-34665MEDIUM6.5NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a local user wi...
CVE-2022-31617HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local us...
CVE-2022-31616HIGH7.1NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD...
CVE-2022-31615MEDIUM5.5NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a local user with basic cap...
CVE-2022-31613MEDIUM6.5NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer, where any local user can cause ...
CVE-2022-31612HIGH7.1NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD...
CVE-2022-31610HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local us...
CVE-2022-31608HIGH7.8NVIDIA GPU Display Driver for Linux contains a vulnerability in an optional D-Bus configuration file, where a local user...
CVE-2022-31607HIGH7.8NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where a local user wi...
CVE-2022-31606HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD...
CVE-2022-30256HIGH7.5An issue was discovered in MaraDNS Deadwood through 3.5.0021 that allows variant V1 of unintended domain name resolution...
CVE-2022-45369MEDIUM4.3Auth. (subscriber+) Broken Access Control vulnerability in Plugin for Google Reviews plugin <= 2.2.2 on WordPress.
CVE-2022-45163MEDIUM4.6An information-disclosure vulnerability exists on select NXP devices when configured in Serial Download Protocol (SDP) m...
CVE-2022-45132CRITICAL9.8In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-...
CVE-2022-45082MEDIUM4.8Multiple Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerabilities in Accordions plugin <= 2.0.3 on WordPress via...
CVE-2022-45073HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in REST API Authentication plugin <= 2.4.0 on WordPress.
CVE-2022-44740HIGH8.8Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Creative Mail plugin <= 1.5.4 on WordPress.
CVE-2022-44634MEDIUM4.9Auth. (admin+) Arbitrary File Read vulnerability in S2W – Import Shopify to WooCommerce plugin <= 1.1.12 on WordPress.
CVE-2022-44584CRITICAL9.1Unauth. Arbitrary File Deletion vulnerability in WatchTowerHQ plugin <= 3.6.15 on WordPress.
CVE-2022-44583HIGH7.5Unauth. Arbitrary File Download vulnerability in WatchTowerHQ plugin <= 3.6.15 on WordPress.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now