2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-43716 | HIGH | 7.5 | 1.0% | Apr 11, 2023 | A vulnerability has been identified in SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0) (All versions < V3.4.29), SIMATIC CP 12... |
| CVE-2022-38604 | HIGH | 7.3 | 0.6% | Apr 11, 2023 | Wacom Driver 6.3.46-1 for Windows and lower was discovered to contain an arbitrary file deletion vulnerability. |
| CVE-2022-46716 | HIGH | 7.5 | 0.5% | Apr 10, 2023 | A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.1, iOS 16.2 and iPad... |
| CVE-2022-42858 | HIGH | 7.8 | 0.2% | Apr 10, 2023 | A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.1. An ap... |
| CVE-2022-41976 | HIGH | 8.8 | 1.6% | Apr 10, 2023 | An privilege escalation issue was discovered in Scada-LTS 2.7.1.1 build 2948559113 allows remote attackers, authenticate... |
| CVE-2022-33959 | HIGH | 8.1 | 0.5% | Apr 7, 2023 | IBM Sterling Order Management 10.0 could allow a user to bypass validation and perform unauthorized actions on behalf of... |
| CVE-2022-34333 | HIGH | 7.5 | 0.6% | Apr 7, 2023 | IBM Sterling Order Management 10.0 does not require that users should have strong passwords by default, which makes it ... |
| CVE-2022-46793 | HIGH | 8.8 | 0.2% | Apr 6, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in AdTribes.Io Product Feed PRO for WooCommerce plugin <= 12.4.4 version... |
| CVE-2022-31888 | HIGH | 8.8 | 1.2% | Apr 5, 2023 | Session Fixation vulnerability in in function login in class.auth.php in osTicket through 1.16.2. |
| CVE-2022-4941 | HIGH | 8.8 | 0.3% | Apr 5, 2023 | The WCFM Membership plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2... |
| CVE-2022-4938 | HIGH | 8.8 | 0.2% | Apr 5, 2023 | The WCFM Frontend Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ... |
| CVE-2022-4937 | HIGH | 8.8 | 0.6% | Apr 5, 2023 | The WCFM Frontend Manager plugin for WordPress is vulnerable to unauthorized modification and access of data in versions... |
| CVE-2022-4936 | HIGH | 8.8 | 0.2% | Apr 5, 2023 | The WCFM Marketplace plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ... |
| CVE-2022-4935 | HIGH | 8.8 | 0.7% | Apr 5, 2023 | The WCFM Marketplace plugin for WordPress is vulnerable to unauthorized modification and access of data in versions up t... |
| CVE-2022-45115 | HIGH | 7.8 | 0.5% | Apr 5, 2023 | A buffer overflow vulnerability exists in the Attribute Arena functionality of Ichitaro 2022 1.0.1.57600. A specially cr... |
| CVE-2022-43664 | HIGH | 7.8 | 0.5% | Apr 5, 2023 | A use-after-free vulnerability exists within the way Ichitaro Word Processor 2022, version 1.0.1.57600, processes protec... |
| CVE-2022-48227 | HIGH | 7.8 | 0.2% | Apr 4, 2023 | An issue was discovered in Acuant AsureID Sentinel before 5.2.149. It allows elevation of privileges because it opens No... |
| CVE-2022-48224 | HIGH | 7.3 | 0.2% | Apr 4, 2023 | An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. It is installed with insecure permissions (full write ... |
| CVE-2022-48222 | HIGH | 7.8 | 0.1% | Apr 4, 2023 | An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. During SDK installation, certutil.exe is called by the... |
| CVE-2022-48226 | HIGH | 7.8 | 0.2% | Apr 4, 2023 | An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. During installation, an EXE gets executed out of C:\Wi... |
| CVE-2022-48225 | HIGH | 7.3 | 0.2% | Apr 4, 2023 | An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. It is used to install drivers from several different v... |
| CVE-2022-48221 | HIGH | 7.5 | 0.5% | Apr 4, 2023 | An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. Multiple MSI's get executed out of a standard-user wri... |
| CVE-2022-41633 | HIGH | 8.8 | 0.2% | Apr 4, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in PeepSo Community by PeepSo – Social Network, Membership, Registration... |
| CVE-2022-4934 | HIGH | 7.2 | 1.8% | Apr 4, 2023 | A post-auth command injection vulnerability in the exception wizard of Sophos Web Appliance older than version 4.3.10.4 ... |
| CVE-2022-43940 | HIGH | 8.8 | 0.6% | Apr 3, 2023 | Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including 8.3.x do not correctly... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now