2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23588 | MEDIUM | 6.5 | 0.9% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. A malicious user can cause a denial of service by altering a `S... |
| CVE-2022-23586 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. A malicious user can cause a denial of service by altering a `S... |
| CVE-2022-23585 | MEDIUM | 6.5 | 0.9% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. When decoding PNG images TensorFlow can produce a memory leak i... |
| CVE-2022-23584 | MEDIUM | 6.5 | 0.7% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. A malicious user can cause a use after free behavior when decod... |
| CVE-2022-23583 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. A malicious user can cause a denial of service by altering a `S... |
| CVE-2022-23582 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. A malicious user can cause a denial of service by altering a `S... |
| CVE-2022-23581 | MEDIUM | 6.5 | 1.2% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. The Grappler optimizer in TensorFlow can be used to cause a den... |
| CVE-2022-23580 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. During shape inference, TensorFlow can allocate a large vector ... |
| CVE-2022-23579 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. The Grappler optimizer in TensorFlow can be used to cause a den... |
| CVE-2022-23578 | MEDIUM | 4.3 | 0.7% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. If a graph node is invalid, TensorFlow can leak memory in the i... |
| CVE-2022-23577 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `GetInitOp` is vulnerable to a crash caus... |
| CVE-2022-23576 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `OpLevelCostEstimator::CalculateOutputSiz... |
| CVE-2022-23575 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `OpLevelCostEstimator::CalculateTensorSiz... |
| CVE-2022-23572 | MEDIUM | 6.5 | 1.0% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. Under certain scenarios, TensorFlow can fail to specialize a ty... |
| CVE-2022-23571 | MEDIUM | 6.5 | 0.5% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, a TensorFlow process can ... |
| CVE-2022-23570 | MEDIUM | 6.5 | 0.9% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, TensorFlow might do a nul... |
| CVE-2022-23565 | MEDIUM | 6.5 | 0.5% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. An attacker can trigger denial of service via assertion failure... |
| CVE-2022-23564 | MEDIUM | 6.5 | 0.5% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. When decoding a resource handle tensor from protobuf, a TensorF... |
| CVE-2022-23563 | MEDIUM | 6.3 | 0.1% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. In multiple places, TensorFlow uses `tempfile.mktemp` to create... |
| CVE-2022-23557 | MEDIUM | 6.5 | 0.7% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would trigger a divis... |
| CVE-2022-22939 | MEDIUM | 4.9 | 0.8% | Feb 4, 2022 | VMware Cloud Foundation contains an information disclosure vulnerability due to logging of credentials in plain-text wit... |
| CVE-2022-22804 | MEDIUM | 5.4 | 0.4% | Feb 4, 2022 | A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that... |
| CVE-2022-22726 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | A CWE-20: Improper Input Validation vulnerability exists that could allow arbitrary files on the server to be read by au... |
| CVE-2022-0487 | MEDIUM | 5.5 | 0.4% | Feb 4, 2022 | A use-after-free vulnerability was found in rtsx_usb_ms_drv_remove in drivers/memstick/host/rtsx_usb_ms.c in memstick in... |
| CVE-2022-0472 | MEDIUM | 5.4 | 0.8% | Feb 4, 2022 | Unrestricted Upload of File with Dangerous Type in Packagist jsdecena/laracom prior to v2.0.9. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now