2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-41891HIGH7.5TensorFlow is an open source platform for machine learning. If `tf.raw_ops.TensorListConcat` is given `element_shape=[]`...
CVE-2022-41890HIGH7.5TensorFlow is an open source platform for machine learning. If `BCast::ToShape` is given input larger than an `int32`, i...
CVE-2022-41889HIGH7.5TensorFlow is an open source platform for machine learning. If a list of quantized tensors is assigned to an attribute, ...
CVE-2022-41888HIGH7.5TensorFlow is an open source platform for machine learning. When running on GPU, `tf.image.generate_bounding_box_proposa...
CVE-2022-41887HIGH7.5TensorFlow is an open source platform for machine learning. `tf.keras.losses.poisson` receives a `y_pred` and `y_true` t...
CVE-2022-41886HIGH7.5TensorFlow is an open source platform for machine learning. When `tf.raw_ops.ImageProjectiveTransformV2` is given a larg...
CVE-2022-41885HIGH7.5TensorFlow is an open source platform for machine learning. When `tf.raw_ops.FusedResizeAndPadConv2D` is given a large t...
CVE-2022-41884HIGH7.5TensorFlow is an open source platform for machine learning. If a numpy array is created with a shape such that one eleme...
CVE-2022-42904HIGH7.2Zoho ManageEngine ADManager Plus through 7151 allows authenticated admin users to execute the commands in proxy settings...
CVE-2022-41883HIGH7.5TensorFlow is an open source platform for machine learning. When ops that have specified input sizes receive a differing...
CVE-2022-37197HIGH7.8IOBit IOTransfer V4 is vulnerable to Unquoted Service Path.
CVE-2022-43482HIGH8.8Missing Authorization vulnerability in Appointment Booking Calendar plugin <= 1.3.69 on WordPress.
CVE-2022-42461HIGH8.8Broken Access Control vulnerability in miniOrange's Google Authenticator plugin <= 5.6.1 on WordPress.
CVE-2022-44820HIGH7.2Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/?page=transactions/manage_transact...
CVE-2022-44415HIGH7.2Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/view_mechanic.php?id=.
CVE-2022-44414HIGH7.2Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/services/manage_service.php?id=.
CVE-2022-44413HIGH7.2Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/manage_mechanic.php?id=.
CVE-2022-41692HIGH8.8Missing Authorization vulnerability in Appointment Hour Booking plugin <= 1.3.71 on WordPress.
CVE-2022-40687HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Creative Mail plugin <= 1.5.4 on WordPress.
CVE-2022-40686HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Creative Mail plugin <= 1.5.4 on WordPress.
CVE-2022-44379HIGH7.2Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_service.
CVE-2022-44378HIGH7.2Automotive Shop Management System v1.0 is vulnerable to SQL via /asms/classes/Master.php?f=delete_mechanic.
CVE-2022-45471HIGH7.5In JetBrains Hub before 2022.3.15181 Throttling was missed when sending emails to a particular email address
CVE-2022-24037HIGH8.2Karmasis Informatics Infraskope SIEM+ has an unauthenticated access vulnerability which could allow an unauthenticated...
CVE-2022-43308HIGH7.8INTELBRAS SG 2404 MR 20180928-rel64938 allows authenticated attackers to arbitrarily create Administrator accounts via c...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now