2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-49041MEDIUM4.4Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in backup task management functiona...
CVE-2022-49040MEDIUM4.4Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in connection management functional...
CVE-2022-49039MEDIUM6.7Out-of-bounds write vulnerability in backup task management functionality in Synology Drive Client before 3.4.0-15721 al...
CVE-2022-49037MEDIUM6.5Insertion of sensitive information into log file vulnerability in proxy settings component in Synology Drive Client befo...
CVE-2022-48945MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: vivid: fix compose size exceed boundary syz...
CVE-2022-4533MEDIUM5.3The Limit Login Attempts Plus plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including...
CVE-2022-25768MEDIUM6.5The logic in place to facilitate the update process via the user interface lacks access control to verify if permission ...
CVE-2022-25777MEDIUM6.5Prior to the patched version, an authenticated user of Mautic could read system files and access the internal addresses ...
CVE-2022-25776MEDIUM6.5Prior to the patched version, logged in users of Mautic are able to access areas of the application that they should be ...
CVE-2022-25774MEDIUM5.4Prior to the patched version, logged in users of Mautic are vulnerable to a self XSS vulnerability in the notifications ...
CVE-2022-39068MEDIUM6.5There is a buffer overflow vulnerability in ZTE MF296R. Due to insufficient validation of the SMS parameter length, an a...
CVE-2022-3459MEDIUM5.3The WooCommerce Multiple Free Gift plugin for WordPress is vulnerable to gift manipulation in all versions up to, and in...
CVE-2022-45856MEDIUM5.9An improper certificate validation vulnerability [CWE-295] in FortiClientWindows 6.4 all versions, 7.0.0 through 7.0.7, ...
CVE-2022-27592MEDIUM6.7An unquoted search path or element vulnerability has been reported to affect QVR Smart Client. If exploited, the vulnera...
CVE-2022-4529MEDIUM5.3The Security, Antivirus, Firewall – S.A.F plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, a...
CVE-2022-3556MEDIUM4.8The Cab fare calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the vehicle title setting ...
CVE-2022-4539MEDIUM5.3The Web Application Firewall plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including,...
CVE-2022-4536MEDIUM5.3The IP Vault – WP Firewall plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 1...
CVE-2022-4100MEDIUM5.3The WP Cerber Security plugin for WordPress is vulnerable to IP Protection bypass in versions up to, and including 9.4 d...
CVE-2022-48944MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: sched: Fix yet more sched_fork() races Where commi...
CVE-2022-39996MEDIUM4.8Cross Site Scripting vulnerability in Teldats Router RS123, RS123w allows attacker to execute arbitrary code via the cmd...
CVE-2022-48942MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: hwmon: Handle failure to register sensor with therm...
CVE-2022-48941MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: ice: fix concurrent reset and removal of VFs Commi...
CVE-2022-48940MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: Fix crash due to incorrect copy_map_value Whe...
CVE-2022-48938MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: CDC-NCM: avoid overflow in sanity checking A broke...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now