2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-0381 | MEDIUM | 6.1 | 3.9% | Feb 4, 2022 | The Embed Swagger WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to insufficient escaping/sanitiza... |
| CVE-2022-0380 | MEDIUM | 6.1 | 0.9% | Feb 4, 2022 | The Fotobook WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to insufficient escaping and the use o... |
| CVE-2022-0264 | MEDIUM | 5.5 | 0.3% | Feb 4, 2022 | A vulnerability was found in the Linux kernel's eBPF verifier when handling internal data structures. Internal memory lo... |
| CVE-2022-0218 | MEDIUM | 6.1 | 70.5% | Feb 4, 2022 | The WP HTML Mail WordPress plugin is vulnerable to unauthorized access which allows unauthenticated attackers to retriev... |
| CVE-2022-24249 | MEDIUM | 5.5 | 0.6% | Feb 4, 2022 | A Null Pointer Dereference vulnerability exists in GPAC 1.1.0 via the xtra_box_write function in /box_code_base.c, which... |
| CVE-2022-23316 | MEDIUM | 4.9 | 1.0% | Feb 4, 2022 | An issue was discovered in taoCMS v3.0.2. There is an arbitrary file read vulnerability that can read any files via admi... |
| CVE-2022-21741 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. ### Impact An attacker can craft a TFLite model that would trig... |
| CVE-2022-21739 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `QuantizedMaxPool` has an undefined behav... |
| CVE-2022-21738 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseCountSparseOutput` can be made to ... |
| CVE-2022-21737 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `*Bincount` operations allows malicious u... |
| CVE-2022-23569 | MEDIUM | 6.5 | 0.5% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. Multiple operations in TensorFlow can be used to trigger a deni... |
| CVE-2022-21735 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `FractionalMaxPool` can be made to crash ... |
| CVE-2022-21734 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `MapStage` is vulnerable a `CHECK`-fail i... |
| CVE-2022-21729 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `UnravelIndex` is vulnerable to a divisio... |
| CVE-2022-21725 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The estimator for the cost of some convolution operations can b... |
| CVE-2022-23568 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `AddManySparseToTensorsMap` is vulnerable... |
| CVE-2022-23567 | MEDIUM | 6.5 | 1.1% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementations of `Sparse*Cwise*` ops are vulnerable to in... |
| CVE-2022-21736 | MEDIUM | 6.5 | 0.7% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseTensorSliceDataset` has an undefin... |
| CVE-2022-21733 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `StringNGrams` can be used to trigger a d... |
| CVE-2022-21732 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of `ThreadPoolHandle` can be used to trigger... |
| CVE-2022-21731 | MEDIUM | 6.5 | 0.8% | Feb 3, 2022 | Tensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `ConcatV2` can be use... |
| CVE-2022-23871 | MEDIUM | 5.4 | 0.6% | Feb 3, 2022 | Multiple cross-site scripting (XSS) vulnerabilities in the component outcomes_addProcess.php of Gibbon CMS v22.0.01 allo... |
| CVE-2022-22818 | MEDIUM | 6.1 | 3.3% | Feb 3, 2022 | The {% debug %} template tag in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2 does not properly enco... |
| CVE-2022-0432 | MEDIUM | 6.1 | 4.5% | Feb 2, 2022 | Prototype Pollution in GitHub repository mastodon/mastodon prior to 3.5.0. |
| CVE-2022-24301 | MEDIUM | 6.5 | 1.0% | Feb 2, 2022 | In Minetest before 5.4.0, players can add or subtract items from a different player's inventory. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now