CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2021-37936

    Last Modified: 29 Apr 2025

    It was discovered that Kibana was not sanitizing document fields containing HTML snippets. Using this vulnerability, an attacker with the ability to write documents to an elasticsearch index could inject HTML. When the Discover app highlighted a search term containing the HTML, it would be rendered for the user.

    Published: 18 Nov 2022
    5.5
    Medium

    CVE-2022-45473

    Last Modified: 30 Apr 2025

    In drachtio-server 0.8.18, /var/log/drachtio has mode 0777 and drachtio.log has mode 0666.

    Published: 18 Nov 2022
    9.8
    Critical

    CVE-2022-45474

    Last Modified: 29 Apr 2025

    drachtio-server 0.8.18 has a request-handler.cpp event_cb use-after-free for any request.

    Published: 18 Nov 2022
    6.1
    Medium

    CVE-2021-31739

    Last Modified: 29 Apr 2025

    The SEPPmail solution is vulnerable to a Cross-Site Scripting vulnerability (XSS), because user input is not correctly encoded in HTML attributes when returned by the server.SEPPmail 11.1.10 allows XSS via a recipient address.

    Published: 18 Nov 2022
    7.5
    High

    CVE-2022-30256

    Last Modified: 29 Apr 2025

    An issue was discovered in MaraDNS Deadwood through 3.5.0021 that allows variant V1 of unintended domain name resolution. A revoked domain name can still be resolvable for a long time, including expired domains and taken-down malicious domains. The effects of an exploit would be widespread and highly impactful, because the exploitation conforms to de facto DNS specifications and operational practices, and overcomes current mitigation patches for "Ghost" domain names.

    Published: 18 Nov 2022
    7.8
    High

    CVE-2022-31607

    Last Modified: 29 Apr 2025

    NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where a local user with basic capabilities can cause improper input validation, which may lead to denial of service, escalation of privileges, data tampering, and limited information disclosure.

    Published: 18 Nov 2022
    7.1
    High

    CVE-2022-31612

    Last Modified: 29 Apr 2025

    NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a local user with basic capabilities can cause an out-of-bounds read, which may lead to a system crash or a leak of internal kernel information.

    Published: 18 Nov 2022
    5.5
    Medium

    CVE-2022-31615

    Last Modified: 29 Apr 2025

    NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a local user with basic capabilities can cause a null-pointer dereference, which may lead to denial of service.

    Published: 18 Nov 2022
    6.1
    Medium

    CVE-2022-31616

    Last Modified: 29 Apr 2025

    NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a local user with basic capabilities can cause an out-of-bounds read, which may lead to denial of service, or information disclosure.

    Published: 18 Nov 2022
    6.8
    Medium

    CVE-2022-41880

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. When the `BaseCandidateSamplerOp` function receives a value in `true_classes` larger than `range_max`, a heap oob read occurs. We have patched the issue in GitHub commit b389f5c944cadfdfe599b3f1e4026e036f30d2d4. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41888

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. When running on GPU, `tf.image.generate_bounding_box_proposals` receives a `scores` input that must be of rank 4 but is not checked. We have patched the issue in GitHub commit cf35502463a88ca7185a99daa7031df60b3c1c98. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.4
    Medium

    CVE-2022-34667

    Last Modified: 25 Apr 2025

    NVIDIA CUDA Toolkit SDK contains a stack-based buffer overflow vulnerability in cuobjdump, where an unprivileged remote attacker could exploit this buffer overflow condition by persuading a local user to download a specially crafted corrupted file and execute cuobjdump against it locally, which may lead to a limited denial of service and some loss of data integrity for the local user.

    Published: 18 Nov 2022
    9.9
    Critical

    CVE-2022-34827

    Last Modified: 29 Apr 2025

    Carel Boss Mini 1.5.0 has Improper Access Control.

    Published: 18 Nov 2022
    5.5
    Medium

    CVE-2022-41889

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. If a list of quantized tensors is assigned to an attribute, the pywrap code fails to parse the tensor and returns a `nullptr`, which is not caught. An example can be seen in `tf.compat.v1.extract_volume_patches` by passing in quantized tensors as input `ksizes`. We have patched the issue in GitHub commit e9e95553e5411834d215e6770c81a83a3d0866ce. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41890

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. If `BCast::ToShape` is given input larger than an `int32`, it will crash, despite being supposed to handle up to an `int64`. An example can be seen in `tf.experimental.numpy.outer` by passing in large input to the input `b`. We have patched the issue in GitHub commit 8310bf8dd188ff780e7fc53245058215a05bdbe5. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41891

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. If `tf.raw_ops.TensorListConcat` is given `element_shape=[]`, it results segmentation fault which can be used to trigger a denial of service attack. We have patched the issue in GitHub commit fc33f3dc4c14051a83eec6535b608abe1d355fde. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    7.8
    High

    CVE-2022-37197

    Last Modified: 29 Apr 2025

    IOBit IOTransfer V4 is vulnerable to Unquoted Service Path.

    Published: 18 Nov 2022
    7.5
    High

    CVE-2022-38871

    Last Modified: 30 Apr 2025

    In Free5gc v3.0.5, the AMF breaks due to malformed NAS messages.

    Published: 18 Nov 2022
    7.8
    High

    CVE-2022-31606

    Last Modified: 29 Apr 2025

    NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a failure to properly validate data might allow an attacker with basic user capabilities to cause an out-of-bounds access in kernel mode, which could lead to denial of service, information disclosure, escalation of privileges, or data tampering.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41884

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. If a numpy array is created with a shape such that one element is zero and the others sum to a large number, an error will be raised. We have patched the issue in GitHub commit 2b56169c16e375c521a3bc8ea658811cc0793784. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41885

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. When `tf.raw_ops.FusedResizeAndPadConv2D` is given a large tensor shape, it overflows. We have patched the issue in GitHub commit d66e1d568275e6a2947de97dca7a102a211e01ce. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41886

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. When `tf.raw_ops.ImageProjectiveTransformV2` is given a large output shape, it overflows. We have patched the issue in GitHub commit 8faa6ea692985dbe6ce10e1a3168e0bd60a723ba. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41907

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. When `tf.raw_ops.ResizeNearestNeighborGrad` is given a large `size` input, it overflows. We have patched the issue in GitHub commit 00c821af032ba9e5f5fa3fe14690c8d28a657624. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    8.8
    High

    CVE-2021-33621

    Last Modified: 4 Nov 2025

    The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object.

    Published: 18 Nov 2022
    4.4
    Medium

    CVE-2022-3261

    Last Modified: 21 Nov 2024

    A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages during the OpenStack overcloud update run, leading to a disclosure of sensitive information problem.

    Published: 18 Nov 2022
    7.8
    High

    CVE-2022-4095

    Last Modified: 26 Feb 2025

    A use-after-free flaw was found in Linux kernel before 5.19.2. This issue occurs in cmd_hdl_filter in drivers/staging/rtl8712/rtl8712_cmd.c, allowing an attacker to launch a local denial of service attack and gain escalation of privileges.

    Published: 18 Nov 2022
    6.8
    Medium

    CVE-2022-41883

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. When ops that have specified input sizes receive a differing number of inputs, the executor will crash. We have patched the issue in GitHub commit f5381e0e10b5a61344109c1b7c174c68110f7629. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41893

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. If `tf.raw_ops.TensorListResize` is given a nonscalar value for input `size`, it results `CHECK` fail which can be used to trigger a denial of service attack. We have patched the issue in GitHub commit 888e34b49009a4e734c27ab0c43b0b5102682c56. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    7.1
    High

    CVE-2022-41894

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. The reference kernel of the `CONV_3D_TRANSPOSE` TensorFlow Lite operator wrongly increments the data_ptr when adding the bias to the result. Instead of `data_ptr += num_channels;` it should be `data_ptr += output_num_channels;` as if the number of input channels is different than the number of output channels, the wrong result will be returned and a buffer overflow will occur if num_channels > output_num_channels. An attacker can craft a model with a specific number of input channels. It is then possible to write specific values through the bias of the layer outside the bounds of the buffer. This attack only works if the reference kernel resolver is used in the interpreter. We have patched the issue in GitHub commit 72c0bdcb25305b0b36842d746cc61d72658d2941. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41897

    Last Modified: 22 Apr 2025

    TensorFlow is an open source platform for machine learning. If `FractionMaxPoolGrad` is given outsize inputs `row_pooling_sequence` and `col_pooling_sequence`, TensorFlow will crash. We have patched the issue in GitHub commit d71090c3e5ca325bdf4b02eb236cfb3ee823e927. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.8
    Medium

    CVE-2022-41911

    Last Modified: 23 Apr 2025

    TensorFlow is an open source platform for machine learning. When printing a tensor, we get it's data as a `const char*` array (since that's the underlying storage) and then we typecast it to the element type. However, conversions from `char` to `bool` are undefined if the `char` is not `0` or `1`, so sanitizers/fuzzers will crash. The issue has been patched in GitHub commit `1be74370327`. The fix will be included in TensorFlow 2.11.0. We will also cherrypick this commit on TensorFlow 2.10.1, TensorFlow 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

    Published: 18 Nov 2022
    4.7
    Medium

    CVE-2022-43673

    Last Modified: 30 Apr 2025

    Wire through 3.22.3993 on Windows advertises deletion of sent messages; nonetheless, all messages can be retrieved (for a limited period of time) from the AppData\Roaming\Wire\IndexedDB\https_app.wire.com_0.indexeddb.leveldb database.

    Published: 18 Nov 2022
    9.8
    Critical

    CVE-2022-44204

    Last Modified: 30 Apr 2025

    D-Link DIR3060 DIR3060A1_FW111B04.bin is vulnerable to Buffer Overflow.

    Published: 18 Nov 2022
    7.2
    High

    CVE-2022-44378

    Last Modified: 30 Apr 2025

    Automotive Shop Management System v1.0 is vulnerable to SQL via /asms/classes/Master.php?f=delete_mechanic.

    Published: 18 Nov 2022
    7.2
    High

    CVE-2022-44379

    Last Modified: 29 Apr 2025

    Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_service.

    Published: 18 Nov 2022
    7.2
    High

    CVE-2022-44413

    Last Modified: 29 Apr 2025

    Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/manage_mechanic.php?id=.

    Published: 18 Nov 2022
    6.5
    Medium

    CVE-2022-44641

    Last Modified: 29 Apr 2025

    In Linaro Automated Validation Architecture (LAVA) before 2022.11, users with valid credentials can submit crafted XMLRPC requests that cause a recursive XML entity expansion, leading to excessive use of memory on the server and a Denial of Service.

    Published: 18 Nov 2022
    7.2
    High

    CVE-2022-44820

    Last Modified: 29 Apr 2025

    Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/?page=transactions/manage_transaction&id=.

    Published: 18 Nov 2022
    9.8
    Critical

    CVE-2022-45132

    Last Modified: 30 Apr 2025

    In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-submitted Jinja2 template. The REST API endpoint for validating device configuration files in lava-server loads input as a Jinja2 template in a way that can be used to trigger remote code execution in the LAVA server.

    Published: 18 Nov 2022
    5.3
    Medium

    CVE-2022-45163

    Last Modified: 30 Apr 2025

    An information-disclosure vulnerability exists on select NXP devices when configured in Serial Download Protocol (SDP) mode: i.MX RT 1010, i.MX RT 1015, i.MX RT 1020, i.MX RT 1050, i.MX RT 1060, i.MX 6 Family, i.MX 7Dual/Solo, i.MX 7ULP, i.MX 8M Quad, i.MX 8M Mini, and Vybrid. In a device security-enabled configuration, memory contents could potentially leak to physically proximate attackers via the respective SDP port in cold and warm boot attacks. (The recommended mitigation is to completely disable the SDP mode by programming a one-time programmable eFUSE. Customers can contact NXP for additional information.)

    Published: 18 Nov 2022
    7.8
    High

    CVE-2022-31608

    Last Modified: 29 Apr 2025

    NVIDIA GPU Display Driver for Linux contains a vulnerability in an optional D-Bus configuration file, where a local user with basic capabilities can impact protected D-Bus endpoints, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.

    Published: 18 Nov 2022
    7.8
    High

    CVE-2022-31610

    Last Modified: 29 Apr 2025

    NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local user with basic capabilities can cause an out-of-bounds write, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

    Published: 18 Nov 2022
    7.1
    High

    CVE-2022-31613

    Last Modified: 29 Apr 2025

    NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer, where any local user can cause a null-pointer dereference, which may lead to a kernel panic.

    Published: 18 Nov 2022
    7.8
    High

    CVE-2022-31617

    Last Modified: 28 Apr 2025

    NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a local user with basic capabilities can cause an out-of-bounds read, which may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

    Published: 18 Nov 2022
    5.7
    Medium

    CVE-2022-24939

    Last Modified: 29 Apr 2025

     A malformed packet containing an invalid destination address, causes a stack overflow in the Ember ZNet stack. This causes an assert which leads to a reset, immediately clearing the error.

    Published: 17 Nov 2022
    8.8
    High

    CVE-2022-43506

    Last Modified: 16 Apr 2025

    SQL Injection in HandlerTag_KID.ashx in Delta Electronics DIAEnergie versions prior to v1.9.02.001 allows an attacker to inject SQL queries via Network

    Published: 17 Nov 2022
    8.8
    High

    CVE-2022-41775

    Last Modified: 16 Apr 2025

    SQL Injection in Handler_CFG.ashx in Delta Electronics DIAEnergie versions prior to v1.9.02.001 allows an attacker to inject SQL queries via Network

    Published: 17 Nov 2022
    8.8
    High

    CVE-2022-43452

    Last Modified: 16 Apr 2025

    SQL Injection in FtyInfoSetting.aspx in Delta Electronics DIAEnergie versions prior to v1.9.02.001 allows an attacker to inject SQL queries via Network

    Published: 17 Nov 2022
    8.8
    High

    CVE-2022-43457

    Last Modified: 21 Nov 2024

    SQL Injection in HandlerPage_KID.ashx in Delta Electronics DIAEnergie versions prior to v1.9.02.001 allows an attacker to inject SQL queries via Network

    Published: 17 Nov 2022
    8.8
    High

    CVE-2022-43447

    Last Modified: 16 Apr 2025

    SQL Injection in AM_EBillAnalysis.aspx in Delta Electronics DIAEnergie versions prior to v1.9.02.001 allows an attacker to inject SQL queries via Network

    Published: 17 Nov 2022