2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-1813CRITICAL9.8OS Command Injection in GitHub repository yogeshojha/rengine prior to 1.2.0.
CVE-2022-1809HIGH7.8Access of Uninitialized Pointer in GitHub repository radareorg/radare2 prior to 5.7.0.
CVE-2022-31268HIGH7.5A Path Traversal vulnerability in Gitblit 1.9.3 can lead to reading website files via /resources//../ (e.g., followed by...
CVE-2022-31267CRITICAL9.8Gitblit 1.9.2 allows privilege escalation via the Config User Service: a control character can be placed in a profile da...
CVE-2022-31264HIGH7.5Solana solana_rbpf before 0.2.29 has an addition integer overflow via invalid ELF program headers. elf.rs has a panic vi...
CVE-2022-31259CRITICAL9.8The route lookup process in beego before 1.12.9 and 2.x before 2.0.3 allows attackers to bypass access control. When a /...
CVE-2022-1752HIGH8Unrestricted Upload of File with Dangerous Type in GitHub repository polonel/trudesk prior to 1.2.2.
CVE-2022-29222HIGH7.5Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.5, a DTLS Client could provi...
CVE-2022-29216HIGH7.8TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, TensorFlow...
CVE-2022-29215HIGH7.5RegionProtect is a plugin that allows users to manage certain events in certain regions of the world. Versions prior to ...
CVE-2022-29214MEDIUM6.1NextAuth.js (next-auth) is am open source authentication solution for Next.js applications. Prior to versions 3.29.3 and...
CVE-2022-29213MEDIUM5.5TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the `tf.co...
CVE-2022-29212MEDIUM5.5TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, certain TF...
CVE-2022-29211MEDIUM5.5TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem...
CVE-2022-29210MEDIUM5.5TensorFlow is an open source platform for machine learning. In version 2.8.0, the `TensorKey` hash function used total e...
CVE-2022-29209MEDIUM5.5TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the macros...
CVE-2022-29190HIGH7.5Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, an attacker can send pack...
CVE-2022-29189MEDIUM5.3Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, a buffer that was used fo...
CVE-2022-29188MEDIUM6.5Smokescreen is an HTTP proxy. The primary use case for Smokescreen is to prevent server-side request forgery (SSRF) atta...
CVE-2022-31258MEDIUM6.7In Checkmk before 1.6.0p29, 2.x before 2.0.0p25, and 2.1.x before 2.1.0b10, a site user can escalate to root by editing ...
CVE-2022-29208HIGH7.1TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem...
CVE-2022-29206MEDIUM5.5TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem...
CVE-2022-29205MEDIUM5.5TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, there is a...
CVE-2022-29204MEDIUM5.5TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem...
CVE-2022-29203MEDIUM5.5TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now