CVE Feed

    Dashboard / CVE

    5.3
    Medium

    CVE-2022-22680

    Last Modified: 14 Jan 2025

    Exposure of sensitive information to an unauthorized actor vulnerability in Web Server in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to obtain sensitive information via unspecified vectors.

    Published: 7 Feb 2022
    6.1
    Medium

    CVE-2022-21813

    Last Modified: 21 Nov 2024

    NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.

    Published: 7 Feb 2022
    6.1
    Medium

    CVE-2022-21814

    Last Modified: 21 Nov 2024

    NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver package, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.

    Published: 7 Feb 2022
    7.1
    High

    CVE-2021-25095

    Last Modified: 21 Nov 2024

    The IP2Location Country Blocker WordPress plugin before 2.26.5 does not have authorisation and CSRF checks in the ip2location_country_blocker_save_rules AJAX action, allowing any authenticated users, such as subscriber to call it and block arbitrary country, or block all of them at once, preventing users from accessing the frontend.

    Published: 7 Feb 2022
    —
    Unknown

    CVE-2022-24580

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-24580. Reason: This candidate is a duplicate of CVE-2023-24580. A typo caused the wrong ID to be used. Notes: All CVE users should reference CVE-2023-24580 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 7 Feb 2022
    8.8
    High

    CVE-2020-10370

    Last Modified: 15 Apr 2026

    Certain Cypress (and Broadcom) Wireless Combo chips such as CYW43455, when a 2021-01-26 Bluetooth firmware update is not present, allow a Bluetooth outage via a "Spectra" attack.

    Published: 7 Feb 2022
    7.5
    High

    CVE-2022-21712

    Last Modified: 23 Apr 2025

    twisted is an event-driven networking engine written in Python. In affected versions twisted exposes cookies and authorization headers when following cross-origin redirects. This issue is present in the `twited.web.RedirectAgent` and `twisted.web. BrowserLikeRedirectAgent` functions. Users are advised to upgrade. There are no known workarounds.

    Published: 7 Feb 2022
    7.8
    High

    CVE-2022-0492

    Last Modified: 3 Jun 2026

    A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

    Published: 7 Feb 2022
    7.5
    High

    CVE-2022-22833

    Last Modified: 21 Nov 2024

    An issue was discovered in Servisnet Tessa 0.0.2. An attacker can obtain sensitive information via a /js/app.js request.

    Published: 6 Feb 2022
    9.8
    Critical

    CVE-2022-22832

    Last Modified: 21 Nov 2024

    An issue was discovered in Servisnet Tessa 0.0.2. Authorization data is available via an unauthenticated /data-service/users/ request.

    Published: 6 Feb 2022
    9.8
    Critical

    CVE-2022-22831

    Last Modified: 21 Nov 2024

    An issue was discovered in Servisnet Tessa 0.0.2. An attacker can add a new sysadmin user via a manipulation of the Authorization HTTP header.

    Published: 6 Feb 2022
    8.8
    High

    CVE-2021-39280

    Last Modified: 21 Nov 2024

    Certain Korenix JetWave devices allow authenticated users to execute arbitrary code as root via /syscmd.asp. This affects 2212X before 1.9.1, 2212S before 1.9.1, 2212G before 1.8, 3220 V3 before 1.5.1, 3420 V3 before 1.5.1, and 2311 through 2022-01-31.

    Published: 6 Feb 2022
    7.5
    High

    CVE-2007-20001

    Last Modified: 21 Nov 2024

    A flaw was found in StarWind iSCSI target. An attacker could script standard iSCSI Initiator operation(s) to exhaust the StarWind service socket, which could lead to denial of service. This affects iSCSI SAN (Windows Native) Version 3.2.2 build 2007-02-20.

    Published: 6 Feb 2022
    9.8
    Critical

    CVE-2013-20004

    Last Modified: 21 Nov 2024

    A flaw was found in StarWind iSCSI target. StarWind service does not limit client connections and allocates memory on each connection attempt. An attacker could create a denial of service state by trying to connect a non-existent target multiple times. This affects iSCSI SAN (Windows Native) Version 6.0, build 2013-01-16.

    Published: 6 Feb 2022
    8.8
    High

    CVE-2022-24551

    Last Modified: 21 Nov 2024

    A flaw was found in StarWind Stack. The endpoint for setting a new password doesn’t check the current username and old password. An attacker could reset any local user password (including system/administrator user) using any available user This affects StarWind SAN and NAS v0.2 build 1633.

    Published: 6 Feb 2022
    9.8
    Critical

    CVE-2022-24552

    Last Modified: 21 Nov 2024

    A flaw was found in the REST API in StarWind Stack. REST command, which manipulates a virtual disk, doesn’t check input parameters. Some of them go directly to bash as part of a script. An attacker with non-root user access can inject arbitrary data into the command that will be executed with root privileges. This affects StarWind SAN and NAS v0.2 build 1633.

    Published: 6 Feb 2022
    7.5
    High

    CVE-2022-23206

    Last Modified: 21 Nov 2024

    In Apache Traffic Control Traffic Ops prior to 6.1.0 or 5.1.6, an unprivileged user who can reach Traffic Ops over HTTPS can send a specially-crafted POST request to /user/login/oauth to scan a port of a server that Traffic Ops can reach.

    Published: 6 Feb 2022
    5.4
    Medium

    CVE-2022-0502

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v.

    Published: 6 Feb 2022
    7.5
    High

    CVE-2022-3517

    Last Modified: 13 May 2025

    A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.

    Published: 6 Feb 2022
    7.8
    High

    CVE-2022-26125

    Last Modified: 4 Nov 2025

    Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to wrong checks on the input packet length in isisd/isis_tlvs.c.

    Published: 6 Feb 2022
    9.8
    Critical

    CVE-2021-38172

    Last Modified: 21 Nov 2024

    perM 0.4.0 has a Buffer Overflow related to strncpy. (Debian initially fixed this in 0.4.0-7.)

    Published: 5 Feb 2022
    6.1
    Medium

    CVE-2022-0501

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Reflected in Packagist ptrofimov/beanstalk_console prior to 1.7.12.

    Published: 5 Feb 2022
    6.1
    Medium

    CVE-2022-0437

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - DOM in NPM karma prior to 6.3.14.

    Published: 5 Feb 2022
    7.8
    High

    CVE-2022-26126

    Last Modified: 4 Nov 2025

    Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to the use of strdup with a non-zero-terminated binary string in isis_nb_notifications.c.

    Published: 5 Feb 2022
    5.4
    Medium

    CVE-2021-32036

    Last Modified: 21 Nov 2024

    An authenticated user without any specific authorizations may be able to repeatedly invoke the features command where at a high volume may lead to resource depletion or generate high lock contention. This may result in denial of service and in rare cases could result in id field collisions. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.3; MongoDB Server v4.4 versions prior to and including 4.4.9; MongoDB Server v4.2 versions prior to and including 4.2.16 and MongoDB Server v4.0 versions prior to and including 4.0.28

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-38960

    Last Modified: 21 Nov 2024

    IBM OPENBMC OP920, OP930, and OP940 could allow an unauthenticated user to obtain sensitive information. IBM X-Force ID: 212047.

    Published: 4 Feb 2022
    8.1
    High

    CVE-2018-25029

    Last Modified: 21 Nov 2024

    The Z-Wave specification requires that S2 security can be downgraded to S0 or other less secure protocols, allowing an attacker within radio range during pairing to downgrade and then exploit a different vulnerability (CVE-2013-20003) to intercept and spoof traffic.

    Published: 4 Feb 2022
    8.3
    High

    CVE-2013-20003

    Last Modified: 21 Nov 2024

    Z-Wave devices from Sierra Designs (circa 2013) and Silicon Labs (using S0 security) may use a known, shared network key of all zeros, allowing an attacker within radio range to spoof Z-Wave traffic.

    Published: 4 Feb 2022
    4
    Medium

    CVE-2022-0317

    Last Modified: 21 Apr 2025

    An improper input validation vulnerability in go-attestation before 0.3.3 allows local users to provide a maliciously-formed Quote over no/some PCRs, causing AKPublic.Verify to succeed despite the inconsistency. Subsequent use of the same set of PCR values in Eventlog.Verify lacks the authentication performed by quote verification, meaning a local attacker could couple this vulnerability with a maliciously-crafted TCG log in Eventlog.Verify to spoof events in the TCG log, hence defeating remotely-attested measured-boot. We recommend upgrading to Version 0.4.0 or above.

    Published: 4 Feb 2022
    7.5
    High

    CVE-2022-0481

    Last Modified: 21 Nov 2024

    NULL Pointer Dereference in Homebrew mruby prior to 3.2.

    Published: 4 Feb 2022
    —
    Unknown

    CVE-2022-0227

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 4 Feb 2022
    7.1
    High

    CVE-2022-23805

    Last Modified: 21 Nov 2024

    A security out-of-bounds read information disclosure vulnerability in Trend Micro Worry-Free Business Security Server could allow a local attacker to send garbage data to a specific named pipe and crash the server. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 4 Feb 2022
    9.8
    Critical

    CVE-2021-36152

    Last Modified: 21 Nov 2024

    Apache Gobblin trusts all certificates used for LDAP connections in Gobblin-as-a-Service. This affects versions <= 0.15.0. Users should update to version 0.16.0 which addresses this issue.

    Published: 4 Feb 2022
    5.5
    Medium

    CVE-2021-36151

    Last Modified: 21 Nov 2024

    In Apache Gobblin, the Hadoop token is written to a temp file that is visible to all local users on Unix-like systems. This affects versions <= 0.15.0. Users should update to version 0.16.0 which addresses this issue.

    Published: 4 Feb 2022
    8.3
    High

    CVE-2022-23609

    Last Modified: 23 Apr 2025

    iTunesRPC-Remastered is a Discord Rich Presence for iTunes on Windows utility. In affected versions iTunesRPC-Remastered did not properly sanitize user input used to remove files leading to file deletion only limited by the process permissions. Users are advised to upgrade as soon as possible.

    Published: 4 Feb 2022
    8.1
    High

    CVE-2022-23611

    Last Modified: 23 Apr 2025

    iTunesRPC-Remastered is a Discord Rich Presence for iTunes on Windows utility. In affected versions iTunesRPC-Remastered did not properly sanitize image file paths leading to OS level command injection. This issue has been patched in commit cdcd48b. Users are advised to upgrade.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-23561

    Last Modified: 23 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause a write outside of bounds of an array in TFLite. In fact, the attacker can override the linked list used by the memory allocator. This can be leveraged for an arbitrary write primitive under certain conditions. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    6.5
    Medium

    CVE-2022-23557

    Last Modified: 22 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would trigger a division by zero in `BiasAndClamp` implementation. There is no check that the `bias_size` is non zero. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    7.6
    High

    CVE-2022-23558

    Last Modified: 22 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause an integer overflow in `TfLiteIntArrayCreate`. The `TfLiteIntArrayGetSizeInBytes` returns an `int` instead of a `size_t. An attacker can control model inputs such that `computed_size` overflows the size of `int` datatype. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    6.5
    Medium

    CVE-2022-23570

    Last Modified: 22 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, TensorFlow might do a null-dereference if attributes of some mutable arguments to some operations are missing from the proto. This is guarded by a `DCHECK`. However, `DCHECK` is a no-op in production builds and an assertion failure in debug builds. In the first case execution proceeds to the dereferencing of the null pointer, whereas in the second case it results in a crash due to the assertion failure. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, and TensorFlow 2.6.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    6.5
    Medium

    CVE-2022-23564

    Last Modified: 23 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. When decoding a resource handle tensor from protobuf, a TensorFlow process can encounter cases where a `CHECK` assertion is invalidated based on user controlled arguments. This allows attackers to cause denial of services in TensorFlow processes. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    6.5
    Medium

    CVE-2022-23565

    Last Modified: 23 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. An attacker can trigger denial of service via assertion failure by altering a `SavedModel` on disk such that `AttrDef`s of some operation are duplicated. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    7.6
    High

    CVE-2022-23562

    Last Modified: 23 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. The implementation of `Range` suffers from integer overflows. These can trigger undefined behavior or, in some scenarios, extremely large allocations. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    7.1
    High

    CVE-2022-23563

    Last Modified: 23 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. In multiple places, TensorFlow uses `tempfile.mktemp` to create temporary files. While this is acceptable in testing, in utilities and libraries it is dangerous as a different process can create the file between the check for the filename in `mktemp` and the actual creation of the file by a subsequent operation (a TOC/TOU type of weakness). In several instances, TensorFlow was supposed to actually create a temporary directory instead of a file. This logic bug is hidden away by the `mktemp` function usage. We have patched the issue in several commits, replacing `mktemp` with the safer `mkstemp`/`mkdtemp` functions, according to the usage pattern. Users are advised to upgrade as soon as possible.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-23559

    Last Modified: 22 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause an integer overflow in embedding lookup operations. Both `embedding_size` and `lookup_size` are products of values provided by the user. Hence, a malicious user could trigger overflows in the multiplication. In certain scenarios, this can then result in heap OOB read/write. Users are advised to upgrade to a patched version.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-23560

    Last Modified: 22 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would allow limited reads and writes outside of arrays in TFLite. This exploits missing validation in the conversion from sparse tensors to dense tensors. The fix is included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range. Users are advised to upgrade as soon as possible.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-23574

    Last Modified: 22 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. There is a typo in TensorFlow's `SpecializeType` which results in heap OOB read/write. Due to a typo, `arg` is initialized to the `i`th mutable argument in a loop where the loop index is `j`. Hence it is possible to assign to `arg` from outside the vector of arguments. Since this is a mutable proto value, it allows both read and write to outside of bounds data. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, and TensorFlow 2.6.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    6.5
    Medium

    CVE-2022-23571

    Last Modified: 23 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, a TensorFlow process can encounter cases where a `CHECK` assertion is invalidated based on user controlled arguments, if the tensors have an invalid `dtype` and 0 elements or an invalid shape. This allows attackers to cause denial of services in TensorFlow processes. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-23566

    Last Modified: 22 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. TensorFlow is vulnerable to a heap OOB write in `Grappler`. The `set_output` function writes to an array at the specified index. Hence, this gives a malicious user a write primitive. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022
    6.5
    Medium

    CVE-2022-23577

    Last Modified: 22 Apr 2025

    Tensorflow is an Open Source Machine Learning Framework. The implementation of `GetInitOp` is vulnerable to a crash caused by dereferencing a null pointer. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

    Published: 4 Feb 2022