2022 CVE Vulnerabilities
27,543 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-1135 | HIGH | 8.8 | 0.7% | Jul 23, 2022 | Use after free in Shopping Cart in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to potentially exploit... |
| CVE-2022-1134 | HIGH | 8.8 | 1.6% | Jul 23, 2022 | Type confusion in V8 in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2022-1133 | HIGH | 8.8 | 0.7% | Jul 23, 2022 | Use after free in WebRTC Perf in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to potentially exploit h... |
| CVE-2022-1132 | MEDIUM | 6.1 | 0.3% | Jul 23, 2022 | Inappropriate implementation in Virtual Keyboard in Google Chrome on Chrome OS prior to 100.0.4896.60 allowed a local at... |
| CVE-2022-1131 | HIGH | 8.8 | 0.7% | Jul 23, 2022 | Use after free in Cast UI in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to potentially exploit heap ... |
| CVE-2022-1130 | HIGH | 8.1 | 0.7% | Jul 23, 2022 | Insufficient validation of trust input in WebOTP in Google Chrome on Android prior to 100.0.4896.60 allowed a remote att... |
| CVE-2022-1129 | MEDIUM | 6.5 | 0.7% | Jul 23, 2022 | Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 100.0.4896.60 allowed a remote att... |
| CVE-2022-1128 | MEDIUM | 6.5 | 0.6% | Jul 23, 2022 | Inappropriate implementation in Web Share API in Google Chrome on Windows prior to 100.0.4896.60 allowed an attacker on ... |
| CVE-2022-1127 | HIGH | 8.8 | 0.7% | Jul 23, 2022 | Use after free in QR Code Generator in Google Chrome prior to 100.0.4896.60 allowed a remote attacker who convinced a us... |
| CVE-2022-1125 | HIGH | 8.8 | 0.7% | Jul 23, 2022 | Use after free in Portals in Google Chrome prior to 100.0.4896.60 allowed a remote attacker who convinced a user to enga... |
| CVE-2022-1096 | HIGH | 8.8 | 24.2% | Jul 23, 2022 | Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit heap corrup... |
| CVE-2022-34115 | CRITICAL | 9.8 | 1.0% | Jul 22, 2022 | DataEase v1.11.1 was discovered to contain a arbitrary file write vulnerability via the parameter dataSourceId. |
| CVE-2022-34114 | HIGH | 8.8 | 0.8% | Jul 22, 2022 | Dataease v1.11.1 was discovered to contain a SQL injection vulnerability via the parameter dataSourceId. |
| CVE-2022-34113 | CRITICAL | 9.8 | 1.1% | Jul 22, 2022 | An issue in the component /api/plugin/upload of Dataease v1.11.1 allows attackers to execute arbitrary code via a crafte... |
| CVE-2022-34112 | MEDIUM | 6.5 | 0.5% | Jul 22, 2022 | An access control issue in the component /api/plugin/uninstall Dataease v1.11.1 allows attackers to arbitrarily uninstal... |
| CVE-2022-36408 | — | — | — | Jul 22, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-31181. Reason: This candidate is a duplicate of ... |
| CVE-2022-25759 | CRITICAL | 9.8 | 9.0% | Jul 22, 2022 | The package convert-svg-core before 0.6.2 are vulnerable to Remote Code Injection via sending an SVG file containing the... |
| CVE-2022-34853 | MEDIUM | 5.4 | 0.4% | Jul 22, 2022 | Multiple Authenticated (contributor or higher user role) Persistent Cross-Site Scripting (XSS) vulnerabilities in wpWax ... |
| CVE-2022-34839 | CRITICAL | 9.8 | 0.9% | Jul 22, 2022 | Authentication Bypass vulnerability in CodexShaper's WP OAuth2 Server plugin <= 1.0.1 at WordPress. |
| CVE-2022-34650 | MEDIUM | 5.4 | 0.4% | Jul 22, 2022 | Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in wpWax Team... |
| CVE-2022-33960 | HIGH | 8.8 | 0.8% | Jul 22, 2022 | Multiple Authenticated (subscriber or higher user role) SQL Injection (SQLi) vulnerabilities in Social Share Buttons by ... |
| CVE-2022-33901 | HIGH | 7.5 | 2.1% | Jul 22, 2022 | Unauthenticated Arbitrary File Read vulnerability in MultiSafepay plugin for WooCommerce plugin <= 4.13.1 at WordPress. |
| CVE-2022-33191 | MEDIUM | 5.4 | 0.4% | Jul 22, 2022 | Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Chinmoy Paul's Testim... |
| CVE-2022-30998 | HIGH | 8.8 | 0.7% | Jul 22, 2022 | Multiple Authenticated (subscriber or higher user role) SQL Injection (SQLi) vulnerabilities in WooPlugins.co's Homepage... |
| CVE-2022-29495 | MEDIUM | 4.3 | 0.4% | Jul 22, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Sygnoos Popup Builder plugin <= 4.1.11 at WordPress allows an attacke... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now