2022 CVE Vulnerabilities

27,528 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-0381MEDIUM6.1The Embed Swagger WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to insufficient escaping/sanitiza...
CVE-2022-0380MEDIUM6.1The Fotobook WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to insufficient escaping and the use o...
CVE-2022-0264MEDIUM5.5A vulnerability was found in the Linux kernel's eBPF verifier when handling internal data structures. Internal memory lo...
CVE-2022-0218MEDIUM6.1The WP HTML Mail WordPress plugin is vulnerable to unauthorized access which allows unauthenticated attackers to retriev...
CVE-2022-24249MEDIUM5.5A Null Pointer Dereference vulnerability exists in GPAC 1.1.0 via the xtra_box_write function in /box_code_base.c, which...
CVE-2022-23316MEDIUM4.9An issue was discovered in taoCMS v3.0.2. There is an arbitrary file read vulnerability that can read any files via admi...
CVE-2022-21741MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. ### Impact An attacker can craft a TFLite model that would trig...
CVE-2022-21739MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `QuantizedMaxPool` has an undefined behav...
CVE-2022-21738MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseCountSparseOutput` can be made to ...
CVE-2022-21737MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `*Bincount` operations allows malicious u...
CVE-2022-23569MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. Multiple operations in TensorFlow can be used to trigger a deni...
CVE-2022-21735MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `FractionalMaxPool` can be made to crash ...
CVE-2022-21734MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `MapStage` is vulnerable a `CHECK`-fail i...
CVE-2022-21729MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `UnravelIndex` is vulnerable to a divisio...
CVE-2022-21725MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The estimator for the cost of some convolution operations can b...
CVE-2022-23568MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `AddManySparseToTensorsMap` is vulnerable...
CVE-2022-23567MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementations of `Sparse*Cwise*` ops are vulnerable to in...
CVE-2022-21736MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseTensorSliceDataset` has an undefin...
CVE-2022-21733MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `StringNGrams` can be used to trigger a d...
CVE-2022-21732MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of `ThreadPoolHandle` can be used to trigger...
CVE-2022-21731MEDIUM6.5Tensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `ConcatV2` can be use...
CVE-2022-23871MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in the component outcomes_addProcess.php of Gibbon CMS v22.0.01 allo...
CVE-2022-22818MEDIUM6.1The {% debug %} template tag in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2 does not properly enco...
CVE-2022-0432MEDIUM6.1Prototype Pollution in GitHub repository mastodon/mastodon prior to 3.5.0.
CVE-2022-24301MEDIUM6.5In Minetest before 5.4.0, players can add or subtract items from a different player's inventory.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now