2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48425 | HIGH | 7.8 | 0.3% | Mar 19, 2023 | In the Linux kernel through 6.2.7, fs/ntfs3/inode.c has an invalid kfree because it does not validate MFT flags before r... |
| CVE-2022-48424 | HIGH | 7.8 | 0.3% | Mar 19, 2023 | In the Linux kernel before 6.1.3, fs/ntfs3/inode.c does not validate the attribute name offset. An unhandled page fault ... |
| CVE-2022-48423 | HIGH | 7.8 | 0.3% | Mar 19, 2023 | In the Linux kernel before 6.1.3, fs/ntfs3/record.c does not validate resident attribute names. An out-of-bounds write m... |
| CVE-2022-48422 | HIGH | 7.8 | 0.3% | Mar 19, 2023 | ONLYOFFICE Docs through 7.3 on certain Linux distributions allows local users to gain privileges via a Trojan horse libg... |
| CVE-2022-46867 | HIGH | 8.8 | 0.3% | Mar 17, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Chasil Universal Star Rating plugin <= 2.1.0 version. |
| CVE-2022-46854 | HIGH | 8.8 | 0.3% | Mar 17, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Obox Themes Launchpad – Coming Soon & Maintenance Mode plugin <= 1.0.... |
| CVE-2022-43606 | HIGH | 7.5 | 8.0% | Mar 16, 2023 | A use-of-uninitialized-pointer vulnerability exists in the Forward Open connection_management_entry functionality of EIP... |
| CVE-2022-38063 | HIGH | 8.8 | 0.3% | Mar 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Social Login WP plugin <= 5.0.0.0 versions. |
| CVE-2022-4009 | HIGH | 8.8 | 0.7% | Mar 16, 2023 | In affected versions of Octopus Deploy it is possible for a user to introduce code via offline package creation |
| CVE-2022-4313 | HIGH | 8.8 | 1.2% | Mar 15, 2023 | A vulnerability was reported where through modifying the scan variables, an authenticated user in Tenable products, that... |
| CVE-2022-44580 | HIGH | 8.8 | 0.6% | Mar 15, 2023 | SQL Injection (SQLi) vulnerability in RichPlugins Plugin for Google Reviews plugin <= 2.2.3 versions. |
| CVE-2022-38456 | HIGH | 7.5 | 0.6% | Mar 15, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ernest Marcinko Ajax Search Lite plugin <= 4... |
| CVE-2022-47427 | HIGH | 8.8 | 0.3% | Mar 15, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Joseph C Dolson My Calendar plugin <= 3.3.24.1 versions. |
| CVE-2022-39214 | HIGH | 7.5 | 25.6% | Mar 14, 2023 | Combodo iTop is an open source, web-based IT service management platform. Prior to versions 2.7.8 and 3.0.2-1, a user wh... |
| CVE-2022-47443 | HIGH | 8.8 | 0.3% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Daniel Powney Multi Rating plugin <= 5.0.5 versions. |
| CVE-2022-47422 | HIGH | 8.8 | 0.3% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in HM Plugin Accept Stripe Donation – AidWP plugin <= 3.1.5 versions. |
| CVE-2022-47147 | HIGH | 8.8 | 0.3% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Kesz1 Technologies ipBlockList plugin <= 1.0 versions. |
| CVE-2022-47143 | HIGH | 8.8 | 0.3% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Multiple Page Generator Plugin – MPG plugin <= 3.3.9 versio... |
| CVE-2022-47141 | HIGH | 8.8 | 0.3% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Seerox WP Dynamic Keywords Injector plugin <= 2.3.15 versions. |
| CVE-2022-47154 | HIGH | 8.8 | 0.3% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Pi Websolution CSS JS Manager, Async JavaScript, Defer Render Blockin... |
| CVE-2022-47163 | HIGH | 7.5 | 0.2% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Tips and Tricks HQ, josh401 WP CSV to Database – Insert CSV file cont... |
| CVE-2022-47162 | HIGH | 8.8 | 0.3% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Dannie Herdyawan DH – Anti AdBlocker plugin <= 36 versions. |
| CVE-2022-47155 | HIGH | 8.8 | 0.3% | Mar 14, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Slider by Supsystic plugin <= 1.8.5 versions. |
| CVE-2022-38074 | HIGH | 8.8 | 0.7% | Mar 13, 2023 | SQL Injection vulnerability in VeronaLabs WP Statistics plugin <= 13.2.10 versions. |
| CVE-2022-31474 | HIGH | 7.5 | 63.8% | Mar 13, 2023 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in iThemes BackupBuddy allo... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now