2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-40010 | MEDIUM | 5.4 | 0.5% | Jun 26, 2023 | Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50_multi was discovered to contain a cross-site scripting (XSS) vu... |
| CVE-2022-46718 | MEDIUM | 5.5 | 0.4% | Jun 23, 2023 | A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS 15.7.2, macOS Ventu... |
| CVE-2022-46715 | MEDIUM | 5.5 | 0.3% | Jun 23, 2023 | A logic issue was addressed with improved checks. This issue is fixed in iOS 16.1 and iPadOS 16. An app may be able to b... |
| CVE-2022-42860 | MEDIUM | 5.5 | 0.2% | Jun 23, 2023 | This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in macOS Monterey 12.... |
| CVE-2022-42807 | MEDIUM | 4.3 | 0.4% | Jun 23, 2023 | A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13. A user may accident... |
| CVE-2022-42792 | MEDIUM | 5.5 | 0.2% | Jun 23, 2023 | This issue was addressed with improved data protection. This issue is fixed in iOS 16.1 and iPadOS 16. An app may be abl... |
| CVE-2022-47593 | MEDIUM | 6.5 | 0.6% | Jun 22, 2023 | Auth. (subscriber+) SQL Injection (SQLi) vulnerability in RapidLoad RapidLoad Power-Up for Autoptimize plugin <= 1.6.35 ... |
| CVE-2022-48495 | MEDIUM | 5.3 | 0.3% | Jun 19, 2023 | Vulnerability of unauthorized access to foreground app information.Successful exploitation of this vulnerability may cau... |
| CVE-2022-48491 | MEDIUM | 5.3 | 0.3% | Jun 19, 2023 | Vulnerability of missing authentication on certain HUAWEI phones.Successful exploitation of this vulnerability can lead ... |
| CVE-2022-48488 | MEDIUM | 5.3 | 0.3% | Jun 19, 2023 | Vulnerability of bypassing the default desktop security controls.Successful exploitation of this vulnerability may cause... |
| CVE-2022-48469 | MEDIUM | 6.5 | 0.3% | Jun 16, 2023 | There is a traffic hijacking vulnerability in Huawei routers. Successful exploitation of this vulnerability can cause pa... |
| CVE-2022-33159 | MEDIUM | 6.5 | 0.3% | Jun 15, 2023 | IBM Security Directory Suite VA 8.0.1 through 8.0.1.19 stores user credentials in plain clear text which can be read by ... |
| CVE-2022-43684 | MEDIUM | 6.5 | 1.8% | Jun 13, 2023 | ServiceNow has released patches and an upgrade that address an Access Control List (ACL) bypass issue in ServiceNow Core... |
| CVE-2022-42880 | MEDIUM | 6.1 | 0.2% | Jun 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Ali Irani Auto Upload Images plugin <= 3.3 versions allows Stored Cro... |
| CVE-2022-41327 | MEDIUM | 4.4 | 0.1% | Jun 13, 2023 | A cleartext transmission of sensitive information vulnerability [CWE-319] in Fortinet FortiOS version 7.2.0 through 7.2.... |
| CVE-2022-33877 | MEDIUM | 5.5 | 0.2% | Jun 13, 2023 | An incorrect default permission [CWE-276] vulnerability in FortiClient (Windows) versions 7.0.0 through 7.0.6 and 6.4.0 ... |
| CVE-2022-47140 | MEDIUM | 6.1 | 0.4% | Jun 12, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Repute InfoSystems ARMember plugin <= 4.0.1 versions. |
| CVE-2022-45827 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in GalleryPlugins Video Contest plugin <= 3.2 versions. |
| CVE-2022-31693 | MEDIUM | 5.5 | 0.2% | Jun 7, 2023 | VMware Tools for Windows (12.x.y prior to 12.1.5, 11.x.y and 10.x.y) contains a denial-of-service vulnerability in the V... |
| CVE-2022-4948 | MEDIUM | 4.3 | 0.5% | Jun 7, 2023 | The FlyingPress plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on its AJAX... |
| CVE-2022-46165 | MEDIUM | 5.4 | 0.8% | Jun 6, 2023 | Syncthing is an open source, continuous file synchronization program. In versions prior to 1.23.5 a compromised instance... |
| CVE-2022-40533 | MEDIUM | 5.5 | 0.1% | Jun 6, 2023 | Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request. |
| CVE-2022-40525 | MEDIUM | 5.5 | 0.1% | Jun 6, 2023 | Information disclosure in Linux Networking Firmware due to unauthorized information leak during side channel analysis. |
| CVE-2022-40523 | MEDIUM | 5.5 | 0.1% | Jun 6, 2023 | Information disclosure in Kernel due to indirect branch misprediction. |
| CVE-2022-33303 | MEDIUM | 5.5 | 0.1% | Jun 6, 2023 | Transient DOS due to uncontrolled resource consumption in Linux kernel when malformed messages are sent from the Gunyah ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now