2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-36757 | — | — | — | Sep 6, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2022-36058 | HIGH | 7.5 | 1.0% | Sep 6, 2022 | Elrond go is the go implementation for the Elrond Network protocol. In versions prior to 1.3.34, anyone who uses elrond-... |
| CVE-2022-36057 | MEDIUM | 4.8 | 0.4% | Sep 6, 2022 | Discourse-Chat is an asynchronous messaging plugin for the Discourse open-source discussion platform. Users of Discourse... |
| CVE-2022-36044 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-36043 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-36041 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-36040 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-32277 | MEDIUM | 5.3 | 0.4% | Sep 6, 2022 | Squiz Matrix CMS 6.20 is vulnerable to an Insecure Direct Object Reference caused by failure to correctly validate autho... |
| CVE-2022-37771 | MEDIUM | 6.7 | 0.4% | Sep 6, 2022 | IObit Malware Fighter v9.2 for Microsoft Windows lacks tamper protection, allowing authenticated attackers with Administ... |
| CVE-2022-36670 | MEDIUM | 6.7 | 0.3% | Sep 6, 2022 | PCProtect Endpoint prior to v5.17.470 for Microsoft Windows lacks tamper protection, allowing authenticated attackers wi... |
| CVE-2022-36042 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-36039 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-36038 | HIGH | 7.8 | 0.9% | Sep 6, 2022 | CircuitVerse is an open-source platform which allows users to construct digital logic circuits online. A remote code exe... |
| CVE-2022-36032 | MEDIUM | 5.3 | 0.8% | Sep 6, 2022 | ReactPHP HTTP is a streaming HTTP client and server implementation for ReactPHP. In ReactPHP's HTTP server component ver... |
| CVE-2022-31792 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | A stored cross-site scripting (XSS) vulnerability exists in the management web interface of WatchGuard Firebox and XTM a... |
| CVE-2022-31791 | HIGH | 7.8 | 0.2% | Sep 6, 2022 | WatchGuard Firebox and XTM appliances allow a local attacker (that has already obtained shell access) to elevate their p... |
| CVE-2022-31789 | CRITICAL | 9.8 | 1.5% | Sep 6, 2022 | An integer overflow in WatchGuard Firebox and XTM appliances allows an unauthenticated remote attacker to trigger a buff... |
| CVE-2022-3026 | HIGH | 8.8 | 1.1% | Sep 6, 2022 | The WP Users Exporter plugin for WordPress is vulnerable to CSV Injection in versions up to, and including, 1.4.2 via th... |
| CVE-2022-38289 | — | — | — | Sep 6, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2022-38131 | MEDIUM | 6.1 | 1.3% | Sep 6, 2022 | RStudio Connect prior to 2023.01.0 is affected by an Open Redirect issue. The vulnerability could allow an attacker to r... |
| CVE-2022-36425 | CRITICAL | 9.8 | 0.7% | Sep 6, 2022 | Broken Access Control vulnerability in Beaver Builder plugin <= 2.5.4.3 at WordPress. |
| CVE-2022-35931 | LOW | 2.7 | 0.4% | Sep 6, 2022 | Nextcloud Password Policy is an app that enables a Nextcloud server admin to define certain rules for passwords. Prior t... |
| CVE-2022-35847 | HIGH | 8.8 | 0.7% | Sep 6, 2022 | An improper neutralization of special elements used in a template engine vulnerability [CWE-1336] in FortiSOAR managemen... |
| CVE-2022-34867 | MEDIUM | 6.5 | 0.6% | Sep 6, 2022 | Unauthenticated Sensitive Information Disclosure vulnerability in WP Libre Form 2 plugin <= 2.0.8 at WordPress allows at... |
| CVE-2022-34656 | MEDIUM | 4.8 | 0.4% | Sep 6, 2022 | Authenticated (admin+) Cross-Site Scripting (XSS) vulnerability in wpdevart Poll, Survey, Questionnaire and Voting syste... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now