2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-0625MEDIUM6.1The Admin Menu Editor WordPress plugin through 1.0.4 does not sanitize and escape a parameter before outputting it back ...
CVE-2022-0592CRITICAL9.8The MapSVG WordPress plugin before 6.2.20 does not validate and escape a parameter via a REST endpoint before using it i...
CVE-2022-0424MEDIUM5.3The Popup by Supsystic WordPress plugin before 1.10.9 does not have any authentication and authorisation in an AJAX acti...
CVE-2022-27224HIGH7.2An issue was discovered in Galleon NTS-6002-GPS 4.14.103-Galleon-NTS-6002.V12 4. An authenticated attacker can perform c...
CVE-2022-23332HIGH8.8Command injection vulnerability in Manual Ping Form (Web UI) in Shenzhen Ejoin Information Technology Co., Ltd. ACOM508/...
CVE-2022-1631HIGH8.8Users Account Pre-Takeover or Users Account Takeover. in GitHub repository microweber/microweber prior to 1.2.15. Victim...
CVE-2022-30286HIGH7.5pyscriptjs (aka PyScript Demonstrator) in PyScript through 2022-05-04 allows a remote user to read Python source code.
CVE-2022-30333HIGH7.5RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) o...
CVE-2022-23066CRITICAL9.1In Solana rBPF versions 0.2.26 and 0.2.27 are affected by Incorrect Calculation which is caused by improper implementati...
CVE-2022-28463HIGH7.8ImageMagick 7.1.0-27 is vulnerable to Buffer Overflow.
CVE-2022-28470CRITICAL9.8marcador package in PyPI 0.1 through 0.13 included a code-execution backdoor.
CVE-2022-1620HIGH7.5NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901....
CVE-2022-1619HIGH7.8Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub repository vim/vim prior to 8.2.4899. This vulnerab...
CVE-2022-1616HIGH7.8Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashi...
CVE-2022-30334MEDIUM5.3Brave before 1.34, when a Private Window with Tor Connectivity is used, leaks .onion URLs in Referer and Origin headers....
CVE-2022-30330MEDIUM6.6In the KeepKey firmware before 7.3.2,Flaws in the supervisor interface can be exploited to bypass important security res...
CVE-2022-29180CRITICAL9.8A vulnerability in which attackers could forge HTTP requests to manipulate the `charm` data directory to access or delet...
CVE-2022-25324HIGH7.5All versions of package bignum are vulnerable to Denial of Service (DoS) due to a type-check exception in V8, when verif...
CVE-2022-29423CRITICAL9.8Pro Features Lock Bypass vulnerability in Countdown & Clock plugin <= 2.3.2 at WordPress.
CVE-2022-29422MEDIUM4.8Multiple Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerabilities in Adam Skaat's Countdown & Clock ...
CVE-2022-28279HIGH7.8Adobe Photoshop versions 22.5.6 (and earlier)and 23.2.2 (and earlier) are affected by a use-after-free vulnerability tha...
CVE-2022-28278HIGH7.8Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerabil...
CVE-2022-28277HIGH7.8Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerabil...
CVE-2022-28276HIGH7.8Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerabil...
CVE-2022-28275HIGH7.8Adobe Photoshop versions 22.5.6 (and earlier) and 23.2.2 (and earlier) are affected by an out-of-bounds write vulnerabil...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now