2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-41554MEDIUM5.4Stored Cross-Site Scripting (XSS) vulnerability in John West Slideshow SE plugin <= 2.5.5 versions.
CVE-2022-40699MEDIUM6.1Cross-Site Scripting (XSS) vulnerability in Dario Curvino Yasr – Yet Another Stars Rating plugin <= 3.1.2 versions.
CVE-2022-38971MEDIUM5.4Stored Cross-Site Scripting (XSS) vulnerability in ThemeKraft Post Form – Registration Form – Profile Form for User Prof...
CVE-2022-46773MEDIUM6.5IBM Robotic Process Automation 21.0.0 - 21.0.7 and 23.0.0 is vulnerable to client-side validation bypass for credential ...
CVE-2022-46774MEDIUM6.5IBM Manage Application 8.8.0 and 8.9.0 in the IBM Maximo Application Suite is vulnerable to incorrect default permission...
CVE-2022-43874MEDIUM6.1IBM App Connect Enterprise Certified Container 4.1, 4.2, 5.0, 5.1, 5.2, 6.0, 6.1, 6.2, and 7.0 is vulnerable to cross-si...
CVE-2022-37402MEDIUM4.8Stored Cross-site Scripting (XSS) vulnerability in AFS Analytics plugin <= 4.18 versions.
CVE-2022-34148MEDIUM4.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JetBackup JetBacku...
CVE-2022-45155MEDIUM5.5An Improper Handling of Exceptional Conditions vulnerability in obs-service-go_modules of openSUSE Factory allows attack...
CVE-2022-23791MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Firmanet Software ...
CVE-2022-23790MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Firmanet Software ...
CVE-2022-47595MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WP Go Maps (formerly WP ...
CVE-2022-47171MEDIUM4.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Paul C. Schroeder ...
CVE-2022-4661MEDIUM5.4The Widgets for WooCommerce Products on Elementor WordPress plugin before 1.0.8 does not validate and escape some of its...
CVE-2022-4652MEDIUM5.4The Video Background WordPress plugin before 2.7.5 does not validate and escape some of its shortcode attributes before ...
CVE-2022-4466MEDIUM5.4The WordPress Infinite Scroll WordPress plugin before 5.6.0.3 does not validate and escape some of its shortcode attribu...
CVE-2022-2259MEDIUM4.3In affected versions of Octopus Deploy it is possible for a user to view Workerpools without being explicitly assigned p...
CVE-2022-2258MEDIUM4.3In affected versions of Octopus Deploy it is possible for a user to view Tagsets without being explicitly assigned permi...
CVE-2022-47484MEDIUM5.5In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi...
CVE-2022-47483MEDIUM5.5In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi...
CVE-2022-47482MEDIUM5.5In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi...
CVE-2022-47481MEDIUM5.5In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi...
CVE-2022-47480MEDIUM5.5In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi...
CVE-2022-47479MEDIUM5.5In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit...
CVE-2022-47478MEDIUM5.5In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now