Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
CRITICAL 9.8 CVE-2022-45872 iTerm2 before 3.4.18 mishandles a DECRQSS response. Iterm2 3.4.18+ Fix from $2,3002022-11-23 HIGH 7.8 CVE-2022-41942 Sourcegraph is a code intelligence platform. In versions prior to 4.1.0 a command Injection vulnerability existed in the gitserver service, present i… Sourcegraph 4.1.0+ Fix from $1,9502022-11-22 HIGH 7.8 CVE-2022-3388 An input validation vulnerability exists in the Monitor Pro interface of MicroSCADA Pro and MicroSCADA X SYS600. An authenticated user can launch an … Microscada Pro Sys600 Mitigation only Fix from $1,9502022-11-21 HIGH 7.5 CVE-2022-45470 missing input validation in Apache Hama may cause information disclosure through path traversal and XSS. Since Apache Hama is EOL, we do not expect t… Hama after 1.7.1 Fix from $1,9502022-11-21 HIGH 7.1 CVE-2022-31616 NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where a local user … Gpu Display Driver 11.8 / 13.3+ Fix from $1,9502022-11-19 HIGH 7.8 CVE-2022-31607 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where a local user with basic capabilities can cau… Gpu Display Driver 390.154 / 450.203.03+ Fix from $1,9502022-11-19 HIGH 7.5 CVE-2022-41909 TensorFlow is an open source platform for machine learning. An input `encoded` that is not a valid `CompositeTensorVariant` tensor will trigger a seg… Tensorflow 2.8.4 / 2.9.3+ Fix from $1,9502022-11-18 HIGH 7.5 CVE-2022-41908 TensorFlow is an open source platform for machine learning. An input `token` that is not a UTF-8 bytestring will trigger a `CHECK` fail in `tf.raw_op… Tensorflow 2.8.4 / 2.9.3+ Fix from $1,9502022-11-18 HIGH 7.5 CVE-2022-41901 TensorFlow is an open source platform for machine learning. An input `sparse_matrix` that is not a matrix with a shape with rank 0 will trigger a `CH… Tensorflow 2.8.4 / 2.9.3+ Fix from $1,9502022-11-18 HIGH 7.5 CVE-2022-41898 TensorFlow is an open source platform for machine learning. If `SparseFillEmptyRowsGrad` is given empty inputs, TensorFlow will crash. We have patche… Tensorflow 2.8.4 / 2.9.3+ Fix from $1,9502022-11-18 HIGH 7.5 CVE-2022-41899 TensorFlow is an open source platform for machine learning. Inputs `dense_features` or `example_state_data` not of rank 2 will trigger a `CHECK` fail… Tensorflow 2.8.4 / 2.9.3+ Fix from $1,9502022-11-18 HIGH 7.5 CVE-2022-41896 TensorFlow is an open source platform for machine learning. If `ThreadUnsafeUnigramCandidateSampler` is given input `filterbank_channel_count` greate… Tensorflow 2.8.4 / 2.9.3+ Fix from $1,9502022-11-18 HIGH 7.5 CVE-2022-41891 TensorFlow is an open source platform for machine learning. If `tf.raw_ops.TensorListConcat` is given `element_shape=[]`, it results segmentation fau… Tensorflow 2.8.4 / 2.9.3+ Fix from $1,9502022-11-18 HIGH 7.5 CVE-2022-41888 TensorFlow is an open source platform for machine learning. When running on GPU, `tf.image.generate_bounding_box_proposals` receives a `scores` input… Tensorflow 2.8.4 / 2.9.3+ Fix from $1,9502022-11-18 HIGH 8.2 CVE-2022-24037 Karmasis Informatics Infraskope SIEM+ has an unauthenticated access vulnerability which could allow an unauthenticated attacker to obtain critical … Infraskope Siem\+ 7.10.00+ Fix from $1,9502022-11-18 CRITICAL 9.8 CVE-2022-36784 Elsight – Elsight Halo  Remote Code Execution (RCE) Elsight Halo web panel allows us to perform connection validation. through the POST request : /ap… Halo Firmware Mitigation only Fix from $2,3002022-11-17 MEDIUM 6.7 CVE-2022-20459 In (TBD) of (TBD), there is a possible way to redirect code execution due to improper input validation. This could lead to local escalation of privil… Android No fix yet Fix from $1,6002022-11-17 MEDIUM 6.5 CVE-2022-39389 Lightning Network Daemon (lnd) is an implementation of a lightning bitcoin overlay network node. All lnd nodes before version `v0.15.4` are vulnerabl… Btcd 0.15.4 / 0.23.3+ Fix from $1,6002022-11-17 MEDIUM 5.7 CVE-2022-39318 FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input validation in `urbdrc` channel. A malic… Fedora 2.9.0+ Fix from $1,6002022-11-16 HIGH 8.1 CVE-2022-38385 IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.2.0 could allow an authenticated user to obtain highly sensitive information or perform unaut… Cloud Pak For Security after 1.10.2.0 Fix from $1,9502022-11-15 MEDIUM 6.5 CVE-2022-20924 A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Thre… Adaptive Security Appliance Software No fix yet Fix from $1,6002022-11-15 HIGH 8.8 CVE-2022-40773 Zoho ManageEngine ServiceDesk Plus MSP before 10609 and SupportCenter Plus before 11025 are vulnerable to privilege escalation. This allows users to … Manageengine Servicedesk Plus Msp 10.6 / 11.0+ Fix from $1,9502022-11-12 MEDIUM 6.5 CVE-2022-31772 IBM MQ 8.0, 9.0 LTS, 9.1 CD, 9.1 LTS, 9.2 CD, and 9.2 LTS could allow an authenticated and authorized user to cause a denial of service to the MQTT c… Mq Patch available Fix from $1,6002022-11-11 HIGH 7.8 CVE-2022-38099 Improper input validation in BIOS firmware for some Intel(R) NUC 11 Compute Elements before version EBTGL357.0065 may allow a privileged user to pote… Nuc 11 Compute Element Cm11ebi38w Firmware Mitigation only Fix from $1,9502022-11-11 MEDIUM 6.7 CVE-2022-33176 Improper input validation in BIOS firmware for some Intel(R) NUC 11 Performance kits and Intel(R) NUC 11 Performance Mini PCs before version PATGL357… Nuc 11 Performance Kit Nuc11pahi30z Firmware Patch available Fix from $1,6002022-11-11 MEDIUM 6.7 CVE-2022-34152 Improper input validation in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Kits before version TY0070 may allow a privileged user to poten… Nuc Board De3815tybe Firmware Patch available Fix from $1,6002022-11-11 MEDIUM 5.5 CVE-2022-29466 Improper input validation in firmware for Intel(R) SPS before version SPS_E3_04.01.04.700.0 may allow an authenticated user to potentially enable den… Server Platform Services Firmware Mitigation only Fix from $1,6002022-11-11 MEDIUM 6.7 CVE-2022-30542 Improper input validation in the firmware for some Intel(R) Server Board S2600WF, Intel(R) Server System R1000WF and Intel(R) Server System R2000WF f… S2600wf Firmware after 02.01.0014 Fix from $1,6002022-11-11 HIGH 8.2 CVE-2022-28126 Improper input validation in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow a privileged user to potentially… Xmm 7560 Firmware Mitigation only Fix from $1,9502022-11-11 HIGH 7.2 CVE-2022-28611 Improper input validation in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow a privileged user to potentially… Xmm 7560 Firmware Mitigation only Fix from $1,9502022-11-11