2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41891 | HIGH | 7.5 | 0.4% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. If `tf.raw_ops.TensorListConcat` is given `element_shape=[]`... |
| CVE-2022-41890 | HIGH | 7.5 | 0.4% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. If `BCast::ToShape` is given input larger than an `int32`, i... |
| CVE-2022-41889 | HIGH | 7.5 | 0.4% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. If a list of quantized tensors is assigned to an attribute, ... |
| CVE-2022-41888 | HIGH | 7.5 | 0.4% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. When running on GPU, `tf.image.generate_bounding_box_proposa... |
| CVE-2022-41887 | HIGH | 7.5 | 0.4% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. `tf.keras.losses.poisson` receives a `y_pred` and `y_true` t... |
| CVE-2022-41886 | HIGH | 7.5 | 0.4% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. When `tf.raw_ops.ImageProjectiveTransformV2` is given a larg... |
| CVE-2022-41885 | HIGH | 7.5 | 0.4% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. When `tf.raw_ops.FusedResizeAndPadConv2D` is given a large t... |
| CVE-2022-41884 | HIGH | 7.5 | 0.3% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. If a numpy array is created with a shape such that one eleme... |
| CVE-2022-42904 | HIGH | 7.2 | 7.7% | Nov 18, 2022 | Zoho ManageEngine ADManager Plus through 7151 allows authenticated admin users to execute the commands in proxy settings... |
| CVE-2022-41883 | HIGH | 7.5 | 0.4% | Nov 18, 2022 | TensorFlow is an open source platform for machine learning. When ops that have specified input sizes receive a differing... |
| CVE-2022-37197 | HIGH | 7.8 | 1.1% | Nov 18, 2022 | IOBit IOTransfer V4 is vulnerable to Unquoted Service Path. |
| CVE-2022-43482 | HIGH | 8.8 | 0.5% | Nov 18, 2022 | Missing Authorization vulnerability in Appointment Booking Calendar plugin <= 1.3.69 on WordPress. |
| CVE-2022-42461 | HIGH | 8.8 | 0.6% | Nov 18, 2022 | Broken Access Control vulnerability in miniOrange's Google Authenticator plugin <= 5.6.1 on WordPress. |
| CVE-2022-44820 | HIGH | 7.2 | 0.8% | Nov 18, 2022 | Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/?page=transactions/manage_transact... |
| CVE-2022-44415 | HIGH | 7.2 | 0.8% | Nov 18, 2022 | Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/view_mechanic.php?id=. |
| CVE-2022-44414 | HIGH | 7.2 | 0.8% | Nov 18, 2022 | Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/services/manage_service.php?id=. |
| CVE-2022-44413 | HIGH | 7.2 | 0.8% | Nov 18, 2022 | Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/manage_mechanic.php?id=. |
| CVE-2022-41692 | HIGH | 8.8 | 0.5% | Nov 18, 2022 | Missing Authorization vulnerability in Appointment Hour Booking plugin <= 1.3.71 on WordPress. |
| CVE-2022-40687 | HIGH | 8.8 | 0.7% | Nov 18, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Creative Mail plugin <= 1.5.4 on WordPress. |
| CVE-2022-40686 | HIGH | 8.8 | 0.3% | Nov 18, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Creative Mail plugin <= 1.5.4 on WordPress. |
| CVE-2022-44379 | HIGH | 7.2 | 0.8% | Nov 18, 2022 | Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_service. |
| CVE-2022-44378 | HIGH | 7.2 | 1.0% | Nov 18, 2022 | Automotive Shop Management System v1.0 is vulnerable to SQL via /asms/classes/Master.php?f=delete_mechanic. |
| CVE-2022-45471 | HIGH | 7.5 | 0.5% | Nov 18, 2022 | In JetBrains Hub before 2022.3.15181 Throttling was missed when sending emails to a particular email address |
| CVE-2022-24037 | HIGH | 8.2 | 0.7% | Nov 18, 2022 | Karmasis Informatics Infraskope SIEM+ has an unauthenticated access vulnerability which could allow an unauthenticated... |
| CVE-2022-43308 | HIGH | 7.8 | 0.3% | Nov 18, 2022 | INTELBRAS SG 2404 MR 20180928-rel64938 allows authenticated attackers to arbitrarily create Administrator accounts via c... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now