2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-36757Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-36058HIGH7.5Elrond go is the go implementation for the Elrond Network protocol. In versions prior to 1.3.34, anyone who uses elrond-...
CVE-2022-36057MEDIUM4.8Discourse-Chat is an asynchronous messaging plugin for the Discourse open-source discussion platform. Users of Discourse...
CVE-2022-36044HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-36043HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-36041HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-36040HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-32277MEDIUM5.3Squiz Matrix CMS 6.20 is vulnerable to an Insecure Direct Object Reference caused by failure to correctly validate autho...
CVE-2022-37771MEDIUM6.7IObit Malware Fighter v9.2 for Microsoft Windows lacks tamper protection, allowing authenticated attackers with Administ...
CVE-2022-36670MEDIUM6.7PCProtect Endpoint prior to v5.17.470 for Microsoft Windows lacks tamper protection, allowing authenticated attackers wi...
CVE-2022-36042HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-36039HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-36038HIGH7.8CircuitVerse is an open-source platform which allows users to construct digital logic circuits online. A remote code exe...
CVE-2022-36032MEDIUM5.3ReactPHP HTTP is a streaming HTTP client and server implementation for ReactPHP. In ReactPHP's HTTP server component ver...
CVE-2022-31792MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in the management web interface of WatchGuard Firebox and XTM a...
CVE-2022-31791HIGH7.8WatchGuard Firebox and XTM appliances allow a local attacker (that has already obtained shell access) to elevate their p...
CVE-2022-31789CRITICAL9.8An integer overflow in WatchGuard Firebox and XTM appliances allows an unauthenticated remote attacker to trigger a buff...
CVE-2022-3026HIGH8.8The WP Users Exporter plugin for WordPress is vulnerable to CSV Injection in versions up to, and including, 1.4.2 via th...
CVE-2022-38289Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-38131MEDIUM6.1RStudio Connect prior to 2023.01.0 is affected by an Open Redirect issue. The vulnerability could allow an attacker to r...
CVE-2022-36425CRITICAL9.8Broken Access Control vulnerability in Beaver Builder plugin <= 2.5.4.3 at WordPress.
CVE-2022-35931LOW2.7Nextcloud Password Policy is an app that enables a Nextcloud server admin to define certain rules for passwords. Prior t...
CVE-2022-35847HIGH8.8An improper neutralization of special elements used in a template engine vulnerability [CWE-1336] in FortiSOAR managemen...
CVE-2022-34867MEDIUM6.5Unauthenticated Sensitive Information Disclosure vulnerability in WP Libre Form 2 plugin <= 2.0.8 at WordPress allows at...
CVE-2022-34656MEDIUM4.8Authenticated (admin+) Cross-Site Scripting (XSS) vulnerability in wpdevart Poll, Survey, Questionnaire and Voting syste...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now