2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-33177 | MEDIUM | 4.3 | 0.3% | Sep 6, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in WPdevelop/Oplugins Booking Calendar plugin <= 9.2.1 at WordPress lead... |
| CVE-2022-32264 | HIGH | 7.5 | 0.7% | Sep 6, 2022 | sys/netinet/tcp_timer.h in FreeBSD before 7.0 contains a denial-of-service (DoS) vulnerability due to improper handling ... |
| CVE-2022-31860 | CRITICAL | 9.8 | 1.7% | Sep 6, 2022 | An issue was discovered in OpenRemote through 1.0.4 allows attackers to execute arbitrary code via a crafted Groovy rule... |
| CVE-2022-31790 | HIGH | 7.5 | 1.5% | Sep 6, 2022 | WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to retrieve sensitive authentication serv... |
| CVE-2022-30298 | HIGH | 7.8 | 0.2% | Sep 6, 2022 | An improper privilege management vulnerability [CWE-269] in Fortinet FortiSOAR before 7.2.1 allows a GUI user who has al... |
| CVE-2022-2945 | LOW | 2.7 | 1.4% | Sep 6, 2022 | The WordPress Infinite Scroll – Ajax Load More plugin for WordPress is vulnerable to Directory Traversal in versions up ... |
| CVE-2022-2943 | MEDIUM | 4.9 | 1.3% | Sep 6, 2022 | The WordPress Infinite Scroll – Ajax Load More plugin for Wordpress is vulnerable to arbitrary file reading in versions ... |
| CVE-2022-2941 | MEDIUM | 4.8 | 5.1% | Sep 6, 2022 | The WP-UserOnline plugin for WordPress has multiple Stored Cross-Site Scripting vulnerabilities in versions up to, and i... |
| CVE-2022-2939 | MEDIUM | 5.3 | 0.7% | Sep 6, 2022 | The WP Cerber Security plugin for WordPress is vulnerable to security protection bypass in versions up to, and including... |
| CVE-2022-2936 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Image Hover Effects Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Video Link values... |
| CVE-2022-2935 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Image Hover Effects Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Media Image U... |
| CVE-2022-2934 | MEDIUM | 5.4 | 0.4% | Sep 6, 2022 | The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Image UR... |
| CVE-2022-2735 | HIGH | 7.8 | 0.3% | Sep 6, 2022 | A vulnerability was found in the PCS project. This issue occurs due to incorrect permissions on a Unix socket used for i... |
| CVE-2022-2718 | MEDIUM | 4.9 | 1.1% | Sep 6, 2022 | The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to SQL Injection v... |
| CVE-2022-2717 | MEDIUM | 4.9 | 1.1% | Sep 6, 2022 | The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to SQL Injection v... |
| CVE-2022-2716 | MEDIUM | 5.4 | 0.4% | Sep 6, 2022 | The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Text Edi... |
| CVE-2022-2695 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'caption'... |
| CVE-2022-2633 | HIGH | 8.2 | 24.5% | Sep 6, 2022 | The All-in-One Video Gallery plugin for WordPress is vulnerable to arbitrary file downloads and blind server-side reques... |
| CVE-2022-2542 | HIGH | 8.8 | 0.5% | Sep 6, 2022 | The uContext for Clickbank plugin for WordPress is vulnerable to Cross-Site Request Forgery to Cross-Site Scripting in v... |
| CVE-2022-2541 | HIGH | 8.8 | 0.5% | Sep 6, 2022 | The uContext for Amazon plugin for WordPress is vulnerable to Cross-Site Request Forgery to Cross-Site Scripting in vers... |
| CVE-2022-2540 | HIGH | 8.8 | 0.5% | Sep 6, 2022 | The Link Optimizer Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery to Cross-Site Scripting in vers... |
| CVE-2022-2518 | MEDIUM | 6.1 | 0.4% | Sep 6, 2022 | The Stockists Manager for Woocommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to... |
| CVE-2022-2517 | MEDIUM | 5.4 | 0.4% | Sep 6, 2022 | The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Caption ... |
| CVE-2022-2516 | MEDIUM | 5.4 | 0.5% | Sep 6, 2022 | The Visual Composer Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the post/page ... |
| CVE-2022-2515 | MEDIUM | 5.4 | 0.8% | Sep 6, 2022 | The Simple Banner plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `pro_version_activation_code... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now