2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-40806CRITICAL9.8The d8s-uuids for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party...
CVE-2022-40805CRITICAL9.8The d8s-urls for python 0.1.0, as distributed on PyPI, included a potential code-execution backdoor inserted by a third ...
CVE-2022-40427CRITICAL9.8The d8s-domains for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third par...
CVE-2022-40424CRITICAL9.8The d8s-urls for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party....
CVE-2022-40076HIGH7.5Tenda AC21 V16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, function: fromSetWifiGusetBasic.
CVE-2022-40075HIGH7.5Tenda AC21 V 16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, form_fast_setting_wifi_set.
CVE-2022-40074HIGH7.5Tenda AC21 V 16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, setSchedWifi.
CVE-2022-40073HIGH7.5Tenda AC21 V 16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, saveParentControlInfo.
CVE-2022-40072HIGH7.5Tenda AC21 V 16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, function: setSmartPowerManagement.
CVE-2022-40071HIGH7.5Tenda AC21 V 16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, formSetDeviceName.
CVE-2022-40070HIGH7.5Tenda AC21 V 16.03.08.15 is vulnerable to Buffer Overflow via bin/httpd, function: formSetFirewallCfg.
CVE-2022-40069HIGH7.5]Tenda AC21 V 16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, function: fromSetSysTime.
CVE-2022-40068HIGH7.5Tenda AC21 V16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, function: formSetQosBand.
CVE-2022-40067HIGH7.5Tenda AC21 V 16.03.08.15 is vulnerable to Buffer Overflow via /bin/httpd, function: formSetVirtualSer.
CVE-2022-3142HIGH8.8The NEX-Forms WordPress plugin before 7.9.7 does not properly sanitise and escape user input before using it in SQL stat...
CVE-2022-3141HIGH8.8The Translate Multilingual sites WordPress plugin before 2.3.3 is vulnerable to an authenticated SQL injection. By addin...
CVE-2022-3036MEDIUM4.8The Gettext override translations WordPress plugin before 2.0.0 does not sanitise and escape some of its settings, which...
CVE-2022-3021MEDIUM4.8The Slickr Flickr WordPress plugin through 2.8.1 does not sanitise and escape its settings, allowing high privilege user...
CVE-2022-38880CRITICAL9.8The d8s-urls for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party....
CVE-2022-38341HIGH7.1Safe Software FME Server v2021.2.5 and below does not employ server-side validation.
CVE-2022-2958HIGH8.8The BadgeOS WordPress plugin before 3.7.1.3 does not sanitise and escape parameters before using them in SQL statements ...
CVE-2022-2840CRITICAL9.8The Zephyr Project Manager WordPress plugin before 3.2.5 does not sanitise and escape various parameters before using th...
CVE-2022-2754CRITICAL9.8The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not validate and escape some reservation paramet...
CVE-2022-2753MEDIUM6.1The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not sanitise and escape some of the reservation ...
CVE-2022-2710MEDIUM4.8The Scroll To Top WordPress plugin before 1.4.1 does not escape some of its settings, which could allow high privilege u...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now