2022 CVE Vulnerabilities
27,554 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23572 | MEDIUM | 6.5 | 1.0% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. Under certain scenarios, TensorFlow can fail to specialize a ty... |
| CVE-2022-23571 | MEDIUM | 6.5 | 0.5% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, a TensorFlow process can ... |
| CVE-2022-23570 | MEDIUM | 6.5 | 0.9% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, TensorFlow might do a nul... |
| CVE-2022-23566 | HIGH | 8.8 | 0.9% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. TensorFlow is vulnerable to a heap OOB write in `Grappler`. The... |
| CVE-2022-23565 | MEDIUM | 6.5 | 0.5% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. An attacker can trigger denial of service via assertion failure... |
| CVE-2022-23564 | MEDIUM | 6.5 | 0.5% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. When decoding a resource handle tensor from protobuf, a TensorF... |
| CVE-2022-23563 | MEDIUM | 6.3 | 0.1% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. In multiple places, TensorFlow uses `tempfile.mktemp` to create... |
| CVE-2022-23562 | HIGH | 8.8 | 0.6% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `Range` suffers from integer overflows. T... |
| CVE-2022-23561 | HIGH | 8.8 | 0.5% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause a write o... |
| CVE-2022-23560 | HIGH | 8.8 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would allow limited r... |
| CVE-2022-23559 | HIGH | 8.8 | 1.2% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause an intege... |
| CVE-2022-23558 | HIGH | 8.8 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause an intege... |
| CVE-2022-23557 | MEDIUM | 6.5 | 0.7% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would trigger a divis... |
| CVE-2022-23379 | CRITICAL | 9.8 | 1.4% | Feb 4, 2022 | Emlog v6.0 was discovered to contain a SQL injection vulnerability via the $TagID parameter of getblogidsfromtagid(). |
| CVE-2022-22987 | CRITICAL | 9.8 | 1.2% | Feb 4, 2022 | The affected product has a hardcoded private key available inside the project folder, which may allow an attacker to ach... |
| CVE-2022-22939 | MEDIUM | 4.9 | 0.8% | Feb 4, 2022 | VMware Cloud Foundation contains an information disclosure vulnerability due to logging of credentials in plain-text wit... |
| CVE-2022-22804 | MEDIUM | 5.4 | 0.4% | Feb 4, 2022 | A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that... |
| CVE-2022-22727 | HIGH | 8.8 | 1.2% | Feb 4, 2022 | A CWE-20: Improper Input Validation vulnerability exists that could allow an unauthenticated attacker to view data, chan... |
| CVE-2022-22726 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | A CWE-20: Improper Input Validation vulnerability exists that could allow arbitrary files on the server to be read by au... |
| CVE-2022-22725 | HIGH | 8.8 | 2.8% | Feb 4, 2022 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could lead to a buffer overflow causing ... |
| CVE-2022-22724 | HIGH | 7.5 | 0.9% | Feb 4, 2022 | A CWE-400: Uncontrolled Resource Consumption vulnerability exists that could cause a denial of service on ports 80 (HTTP... |
| CVE-2022-22723 | HIGH | 8.8 | 2.8% | Feb 4, 2022 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could lead to a buffer overflow causing ... |
| CVE-2022-22722 | HIGH | 7.5 | 2.4% | Feb 4, 2022 | A CWE-798: Use of Hard-coded Credentials vulnerability exists that could result in information disclosure. If an attacke... |
| CVE-2022-22689 | HIGH | 8.8 | 1.3% | Feb 4, 2022 | CA Harvest Software Change Manager versions 13.0.3, 13.0.4, 14.0.0, and 14.0.1, contain a vulnerability in the CSV expor... |
| CVE-2022-22150 | HIGH | 8.8 | 1.7% | Feb 4, 2022 | A memory corruption vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.1.0.52543. ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now