2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-31753 | HIGH | 7.5 | 0.6% | Jun 13, 2022 | The voice wakeup module has a vulnerability of using externally-controlled format strings. Successful exploitation of th... |
| CVE-2022-31752 | MEDIUM | 5.5 | 0.1% | Jun 13, 2022 | Missing authorization vulnerability in the system components. Successful exploitation of this vulnerability will affect ... |
| CVE-2022-31055 | HIGH | 7.5 | 0.6% | Jun 13, 2022 | kCTF is a Kubernetes-based infrastructure for capture the flag (CTF) competitions. Prior to version 1.6.0, the kctf clus... |
| CVE-2022-31763 | MEDIUM | 5.5 | 0.2% | Jun 13, 2022 | The kernel module has the null pointer and out-of-bounds array vulnerabilities. Successful exploitation of this vulnerab... |
| CVE-2022-31762 | HIGH | 7.8 | 0.2% | Jun 13, 2022 | The AMS module has a vulnerability in input validation. Successful exploitation of this vulnerability may cause privileg... |
| CVE-2022-31759 | MEDIUM | 5.5 | 0.1% | Jun 13, 2022 | AppLink has a vulnerability of accessing uninitialized pointers. Successful exploitation of this vulnerability may affec... |
| CVE-2022-31758 | MEDIUM | 4.7 | 0.1% | Jun 13, 2022 | The kernel module has the race condition vulnerability. Successful exploitation of this vulnerability may affect data co... |
| CVE-2022-31756 | MEDIUM | 5.5 | 0.2% | Jun 13, 2022 | The fingerprint sensor module has design defects. Successful exploitation of this vulnerability may affect data confiden... |
| CVE-2022-31755 | MEDIUM | 5.5 | 0.2% | Jun 13, 2022 | The communication module has a vulnerability of improper permission preservation. Successful exploitation of this vulner... |
| CVE-2022-31751 | MEDIUM | 5.5 | 0.2% | Jun 13, 2022 | The kernel emcom module has multi-thread contention. Successful exploitation of this vulnerability may affect system ava... |
| CVE-2022-30311 | CRITICAL | 9.8 | 2.8% | Jun 13, 2022 | In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-refresh-request" POST reque... |
| CVE-2022-30310 | CRITICAL | 9.8 | 2.5% | Jun 13, 2022 | In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-acknerr-request" POST reque... |
| CVE-2022-30309 | CRITICAL | 9.8 | 3.0% | Jun 13, 2022 | In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-off" POS... |
| CVE-2022-30308 | CRITICAL | 9.8 | 2.7% | Jun 13, 2022 | In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-on" POST... |
| CVE-2022-29244 | HIGH | 7.5 | 3.4% | Jun 13, 2022 | npm pack ignores root-level .gitignore and .npmignore file exclusion directives when run in a workspace or with a worksp... |
| CVE-2022-24077 | HIGH | 7.8 | 0.3% | Jun 13, 2022 | Naver Cloud Explorer Beta allows the attacker to execute arbitrary code as System privilege via malicious DLL injection. |
| CVE-2022-1969 | HIGH | 8.8 | 0.8% | Jun 13, 2022 | The Mobile browser color select plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and ... |
| CVE-2022-1961 | MEDIUM | 4.8 | 1.0% | Jun 13, 2022 | The Google Tag Manager for WordPress (GTM4WP) plugin is vulnerable to Stored Cross-Site Scripting due to insufficient es... |
| CVE-2022-1820 | MEDIUM | 6.1 | 1.0% | Jun 13, 2022 | The Keep Backup Daily plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘t’ parameter in vers... |
| CVE-2022-1768 | HIGH | 7.5 | 12.0% | Jun 13, 2022 | The RSVPMaker plugin for WordPress is vulnerable to unauthenticated SQL Injection due to insufficient escaping and param... |
| CVE-2022-1750 | MEDIUM | 4.8 | 0.5% | Jun 13, 2022 | The Sticky Popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ popup_title' parameter in v... |
| CVE-2022-1749 | HIGH | 8.8 | 0.8% | Jun 13, 2022 | The WPMK Ajax Finder WordPress plugin is vulnerable to Cross-Site Request Forgery via the createplugin_atf_admin_setting... |
| CVE-2022-1659 | HIGH | 7.3 | 0.8% | Jun 13, 2022 | Vulnerable versions of the JupiterX Core (<= 2.0.6) plugin register an AJAX action jupiterx_conditional_manager which ca... |
| CVE-2022-1658 | MEDIUM | 5.4 | 0.7% | Jun 13, 2022 | Vulnerable versions of the Jupiter Theme (<= 6.10.1) allow arbitrary plugin deletion by any authenticated user, includin... |
| CVE-2022-1657 | HIGH | 8.8 | 1.6% | Jun 13, 2022 | Vulnerable versions of the Jupiter (<= 6.10.1) and JupiterX (<= 2.0.6) Themes allow logged-in users, including subscribe... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now