2022 CVE Vulnerabilities

27,541 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-26435MEDIUM6.7In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privil...
CVE-2022-26434MEDIUM6.7In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o...
CVE-2022-26433MEDIUM6.7In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privil...
CVE-2022-26432MEDIUM6.7In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o...
CVE-2022-26431MEDIUM6.7In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o...
CVE-2022-26430MEDIUM6.7In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privil...
CVE-2022-26429HIGH7.8In cta, there is a possible way to write permission usage records of an app due to a missing permission check. This coul...
CVE-2022-26428MEDIUM6.4In video codec, there is a possible memory corruption due to a race condition. This could lead to local escalation of pr...
CVE-2022-26427MEDIUM6.7In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio...
CVE-2022-26426MEDIUM6.7In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio...
CVE-2022-21792MEDIUM6.7In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio...
CVE-2022-21791MEDIUM4.4In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio...
CVE-2022-21790MEDIUM4.4In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio...
CVE-2022-21789MEDIUM6.4In audio ipi, there is a possible memory corruption due to a race condition. This could lead to local escalation of priv...
CVE-2022-21788MEDIUM6.7In scp, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of p...
CVE-2022-2370MEDIUM6.5The YaySMTP WordPress plugin before 2.2.1 does not have capability check before displaying the Mailer Credentials in JS ...
CVE-2022-2369MEDIUM4.3The YaySMTP WordPress plugin before 2.2.1 does not have capability check in an AJAX action, allowing any logged in users...
CVE-2022-2328MEDIUM4.8The Flexi Quote Rotator WordPress plugin through 0.9.4 does not sanitise and escape its settings, allowing high privileg...
CVE-2022-2325MEDIUM4.8The Invitation Based Registrations WordPress plugin through 2.2.84 does not sanitise and escape some of its settings, wh...
CVE-2022-2317CRITICAL9.8The Simple Membership WordPress plugin before 4.1.3 allows user to change their membership at the registration stage due...
CVE-2022-2305MEDIUM4.8The WordPress Popup WordPress plugin through 1.9.3.8 does not sanitise and escape some of its settings, which could allo...
CVE-2022-2278MEDIUM4.8The Featured Image from URL (FIFU) WordPress plugin before 4.0.1 does not validate, sanitise and escape some of its sett...
CVE-2022-2273HIGH8.8The Simple Membership WordPress plugin before 4.1.3 does not properly validate the membership_level parameter when editi...
CVE-2022-2260MEDIUM6.5The GiveWP WordPress plugin before 2.21.3 does not have CSRF in place when exporting data, and does not validate the exp...
CVE-2022-2245HIGH8.8The Counter Box WordPress plugin before 1.2.1 is lacking CSRF check when activating and deactivating counters, which cou...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now