Back to search
CVE-2022-0981
Published: Mar 23, 2022
Modified: Aug 2, 2024
PUBLISHED
Description
A flaw was found in Quarkus. The state and potentially associated permissions can leak from one web request to another in RestEasy Reactive. This flaw allows a low-privileged user to perform operations on the database with a different set of privileges than intended.
| Vendor | Product | Versions |
|---|---|---|
n/a | quarkus | affected quarkus 2.7.1.Final |
Weaknesses (CWE)
References
https://bugzilla.redhat.com/show_bug.cgi?id=2062520
x_refsource_MISC
https://github.com/quarkusio/quarkus/issues/23269
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now