2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-46306HIGH7.8ChangingTec ServiSign component has a path traversal vulnerability due to insufficient filtering for special characters ...
CVE-2022-46304HIGH8.8ChangingTec ServiSign component has insufficient filtering for special characters in the connection response parameter. ...
CVE-2022-43448HIGH7.8Out-of-bounds write vulnerability in V-SFT v6.1.7.0 and earlier and TELLUS v4.0.12.0 and earlier allows a local attacker...
CVE-2022-43438HIGH8.8The Administrator function of EasyTest has an Incorrect Authorization vulnerability. A remote attacker authenticated as ...
CVE-2022-43437HIGH8.8The Download function’s parameter of EasyTest has insufficient validation for user input. A remote attacker authenticate...
CVE-2022-43436HIGH8.8The File Upload function of EasyTest has insufficient filtering for special characters and file type. A remote attacker ...
CVE-2022-41645HIGH7.8Out-of-bounds read vulnerability in V-Server v4.0.12.0 and earlier allows a local attacker to obtain the information and...
CVE-2022-40740HIGH7.2Realtek GPON router has insufficient filtering for special characters. A remote attacker authenticated as an administrat...
CVE-2022-39040HIGH7.5aEnrich a+HRD log read function has a path traversal vulnerability. An unauthenticated remote attacker can exploit this ...
CVE-2022-3460HIGH7.5In affected versions of Octopus Deploy it is possible for certain types of sensitive variables to inadvertently become u...
CVE-2022-3842HIGH7.5Use after free in Passwords in Google Chrome prior to 105.0.5195.125 allowed a remote attacker who had compromised the r...
CVE-2022-2743HIGH8.8Integer overflow in Window Manager in Google Chrome on Chrome OS and Lacros prior to 104.0.5112.79 allowed a remote atta...
CVE-2022-2742HIGH8.8Use after free in Exosphere in Google Chrome on Chrome OS and Lacros prior to 104.0.5112.79 allowed a remote attacker wh...
CVE-2022-4373HIGH7.2The Quote-O-Matic WordPress plugin through 1.0.5 does not properly sanitize and escape a parameter before using it in a ...
CVE-2022-4372HIGH7.2The Web Invoice WordPress plugin through 2.1.3 does not properly sanitize and escape a parameter before using it in a SQ...
CVE-2022-4371HIGH7.2The Web Invoice WordPress plugin through 2.1.3 does not properly sanitize and escape a parameter before using it in a SQ...
CVE-2022-4370HIGH7.2The multimedial images WordPress plugin through 1.0b does not properly sanitize and escape a parameter before using it i...
CVE-2022-4360HIGH7.2The WP RSS By Publishers WordPress plugin through 0.1 does not properly sanitize and escape a parameter before using it ...
CVE-2022-4359HIGH7.2The WP RSS By Publishers WordPress plugin through 0.1 does not properly sanitize and escape a parameter before using it ...
CVE-2022-4358HIGH7.2The WP RSS By Publishers WordPress plugin through 0.1 does not properly sanitize and escape a parameter before using it ...
CVE-2022-4356HIGH7.2The LetsRecover WordPress plugin before 1.2.0 does not properly sanitise and escape a parameter before using it in a SQL...
CVE-2022-4355HIGH7.2The LetsRecover WordPress plugin before 1.2.0 does not properly sanitise and escape a parameter before using it in a SQL...
CVE-2022-4352HIGH7.2The Qe SEO Handyman WordPress plugin through 1.0 does not properly sanitize and escape a parameter before using it in a ...
CVE-2022-4351HIGH7.2The Qe SEO Handyman WordPress plugin through 1.0 does not properly sanitize and escape a parameter before using it in a ...
CVE-2022-4324HIGH7.2The Custom Field Template WordPress plugin before 2.5.8 unserialises the content of an imported file, which could lead t...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now