2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41938 | MEDIUM | 5.4 | 0.7% | Nov 19, 2022 | Flarum is an open source discussion platform. Flarum's page title system allowed for page titles to be converted into HT... |
| CVE-2022-4055 | HIGH | 7.4 | 0.7% | Nov 19, 2022 | When xdg-mail is configured to use thunderbird for mailto URLs, improper parsing of the URL can lead to additional heade... |
| CVE-2022-41609 | HIGH | 8.8 | 0.5% | Nov 19, 2022 | Auth. (subscriber+) Server-Side Request Forgery (SSRF) vulnerability in Better Messages plugin 1.9.10.68 on WordPress. |
| CVE-2022-41155 | CRITICAL | 9.8 | 0.7% | Nov 19, 2022 | Block BYPASS vulnerability in iQ Block Country plugin <= 1.2.18 on WordPress. |
| CVE-2022-34667 | MEDIUM | 4.4 | 0.4% | Nov 19, 2022 | NVIDIA CUDA Toolkit SDK contains a stack-based buffer overflow vulnerability in cuobjdump, where an unprivileged remote ... |
| CVE-2022-34665 | MEDIUM | 6.5 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a local user wi... |
| CVE-2022-31617 | HIGH | 7.8 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local us... |
| CVE-2022-31616 | HIGH | 7.1 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD... |
| CVE-2022-31615 | MEDIUM | 5.5 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a local user with basic cap... |
| CVE-2022-31613 | MEDIUM | 6.5 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer, where any local user can cause ... |
| CVE-2022-31612 | HIGH | 7.1 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD... |
| CVE-2022-31610 | HIGH | 7.8 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local us... |
| CVE-2022-31608 | HIGH | 7.8 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Linux contains a vulnerability in an optional D-Bus configuration file, where a local user... |
| CVE-2022-31607 | HIGH | 7.8 | 0.2% | Nov 19, 2022 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where a local user wi... |
| CVE-2022-31606 | HIGH | 7.8 | 0.4% | Nov 19, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD... |
| CVE-2022-30256 | HIGH | 7.5 | 0.9% | Nov 19, 2022 | An issue was discovered in MaraDNS Deadwood through 3.5.0021 that allows variant V1 of unintended domain name resolution... |
| CVE-2022-45369 | MEDIUM | 4.3 | 0.5% | Nov 18, 2022 | Auth. (subscriber+) Broken Access Control vulnerability in Plugin for Google Reviews plugin <= 2.2.2 on WordPress. |
| CVE-2022-45163 | MEDIUM | 4.6 | 0.6% | Nov 18, 2022 | An information-disclosure vulnerability exists on select NXP devices when configured in Serial Download Protocol (SDP) m... |
| CVE-2022-45132 | CRITICAL | 9.8 | 1.9% | Nov 18, 2022 | In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-... |
| CVE-2022-45082 | MEDIUM | 4.8 | 0.4% | Nov 18, 2022 | Multiple Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerabilities in Accordions plugin <= 2.0.3 on WordPress via... |
| CVE-2022-45073 | HIGH | 8.8 | 0.3% | Nov 18, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in REST API Authentication plugin <= 2.4.0 on WordPress. |
| CVE-2022-44740 | HIGH | 8.8 | 0.3% | Nov 18, 2022 | Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Creative Mail plugin <= 1.5.4 on WordPress. |
| CVE-2022-44634 | MEDIUM | 4.9 | 0.7% | Nov 18, 2022 | Auth. (admin+) Arbitrary File Read vulnerability in S2W – Import Shopify to WooCommerce plugin <= 1.1.12 on WordPress. |
| CVE-2022-44584 | CRITICAL | 9.1 | 0.8% | Nov 18, 2022 | Unauth. Arbitrary File Deletion vulnerability in WatchTowerHQ plugin <= 3.6.15 on WordPress. |
| CVE-2022-44583 | HIGH | 7.5 | 0.7% | Nov 18, 2022 | Unauth. Arbitrary File Download vulnerability in WatchTowerHQ plugin <= 3.6.15 on WordPress. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now