2022 CVE Vulnerabilities
27,541 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26435 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privil... |
| CVE-2022-26434 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o... |
| CVE-2022-26433 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privil... |
| CVE-2022-26432 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o... |
| CVE-2022-26431 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o... |
| CVE-2022-26430 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privil... |
| CVE-2022-26429 | HIGH | 7.8 | 0.1% | Aug 1, 2022 | In cta, there is a possible way to write permission usage records of an app due to a missing permission check. This coul... |
| CVE-2022-26428 | MEDIUM | 6.4 | 0.1% | Aug 1, 2022 | In video codec, there is a possible memory corruption due to a race condition. This could lead to local escalation of pr... |
| CVE-2022-26427 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio... |
| CVE-2022-26426 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio... |
| CVE-2022-21792 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio... |
| CVE-2022-21791 | MEDIUM | 4.4 | 0.1% | Aug 1, 2022 | In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio... |
| CVE-2022-21790 | MEDIUM | 4.4 | 0.1% | Aug 1, 2022 | In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio... |
| CVE-2022-21789 | MEDIUM | 6.4 | 0.1% | Aug 1, 2022 | In audio ipi, there is a possible memory corruption due to a race condition. This could lead to local escalation of priv... |
| CVE-2022-21788 | MEDIUM | 6.7 | 0.1% | Aug 1, 2022 | In scp, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of p... |
| CVE-2022-2370 | MEDIUM | 6.5 | 0.7% | Aug 1, 2022 | The YaySMTP WordPress plugin before 2.2.1 does not have capability check before displaying the Mailer Credentials in JS ... |
| CVE-2022-2369 | MEDIUM | 4.3 | 0.6% | Aug 1, 2022 | The YaySMTP WordPress plugin before 2.2.1 does not have capability check in an AJAX action, allowing any logged in users... |
| CVE-2022-2328 | MEDIUM | 4.8 | 0.5% | Aug 1, 2022 | The Flexi Quote Rotator WordPress plugin through 0.9.4 does not sanitise and escape its settings, allowing high privileg... |
| CVE-2022-2325 | MEDIUM | 4.8 | 0.5% | Aug 1, 2022 | The Invitation Based Registrations WordPress plugin through 2.2.84 does not sanitise and escape some of its settings, wh... |
| CVE-2022-2317 | CRITICAL | 9.8 | 1.1% | Aug 1, 2022 | The Simple Membership WordPress plugin before 4.1.3 allows user to change their membership at the registration stage due... |
| CVE-2022-2305 | MEDIUM | 4.8 | 0.5% | Aug 1, 2022 | The WordPress Popup WordPress plugin through 1.9.3.8 does not sanitise and escape some of its settings, which could allo... |
| CVE-2022-2278 | MEDIUM | 4.8 | 0.5% | Aug 1, 2022 | The Featured Image from URL (FIFU) WordPress plugin before 4.0.1 does not validate, sanitise and escape some of its sett... |
| CVE-2022-2273 | HIGH | 8.8 | 0.9% | Aug 1, 2022 | The Simple Membership WordPress plugin before 4.1.3 does not properly validate the membership_level parameter when editi... |
| CVE-2022-2260 | MEDIUM | 6.5 | 0.4% | Aug 1, 2022 | The GiveWP WordPress plugin before 2.21.3 does not have CSRF in place when exporting data, and does not validate the exp... |
| CVE-2022-2245 | HIGH | 8.8 | 0.4% | Aug 1, 2022 | The Counter Box WordPress plugin before 1.2.1 is lacking CSRF check when activating and deactivating counters, which cou... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now