2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-43716HIGH7.5A vulnerability has been identified in SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0) (All versions < V3.4.29), SIMATIC CP 12...
CVE-2022-38604HIGH7.3Wacom Driver 6.3.46-1 for Windows and lower was discovered to contain an arbitrary file deletion vulnerability.
CVE-2022-46716HIGH7.5A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.1, iOS 16.2 and iPad...
CVE-2022-42858HIGH7.8A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.1. An ap...
CVE-2022-41976HIGH8.8An privilege escalation issue was discovered in Scada-LTS 2.7.1.1 build 2948559113 allows remote attackers, authenticate...
CVE-2022-33959HIGH8.1IBM Sterling Order Management 10.0 could allow a user to bypass validation and perform unauthorized actions on behalf of...
CVE-2022-34333HIGH7.5 IBM Sterling Order Management 10.0 does not require that users should have strong passwords by default, which makes it ...
CVE-2022-46793HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in AdTribes.Io Product Feed PRO for WooCommerce plugin <= 12.4.4 version...
CVE-2022-31888HIGH8.8Session Fixation vulnerability in in function login in class.auth.php in osTicket through 1.16.2.
CVE-2022-4941HIGH8.8The WCFM Membership plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2...
CVE-2022-4938HIGH8.8The WCFM Frontend Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2022-4937HIGH8.8The WCFM Frontend Manager plugin for WordPress is vulnerable to unauthorized modification and access of data in versions...
CVE-2022-4936HIGH8.8The WCFM Marketplace plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2022-4935HIGH8.8The WCFM Marketplace plugin for WordPress is vulnerable to unauthorized modification and access of data in versions up t...
CVE-2022-45115HIGH7.8A buffer overflow vulnerability exists in the Attribute Arena functionality of Ichitaro 2022 1.0.1.57600. A specially cr...
CVE-2022-43664HIGH7.8A use-after-free vulnerability exists within the way Ichitaro Word Processor 2022, version 1.0.1.57600, processes protec...
CVE-2022-48227HIGH7.8An issue was discovered in Acuant AsureID Sentinel before 5.2.149. It allows elevation of privileges because it opens No...
CVE-2022-48224HIGH7.3An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. It is installed with insecure permissions (full write ...
CVE-2022-48222HIGH7.8An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. During SDK installation, certutil.exe is called by the...
CVE-2022-48226HIGH7.8An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. During installation, an EXE gets executed out of C:\Wi...
CVE-2022-48225HIGH7.3An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. It is used to install drivers from several different v...
CVE-2022-48221HIGH7.5An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. Multiple MSI's get executed out of a standard-user wri...
CVE-2022-41633HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in PeepSo Community by PeepSo – Social Network, Membership, Registration...
CVE-2022-4934HIGH7.2A post-auth command injection vulnerability in the exception wizard of Sophos Web Appliance older than version 4.3.10.4 ...
CVE-2022-43940HIGH8.8 Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including 8.3.x do not correctly...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now