Back to search
CVE-2022-2828
Published: Oct 13, 2022
Modified: May 15, 2025
PUBLISHED
Description
In affected versions of Octopus Server it is possible to reveal information about teams via the API due to an Insecure Direct Object Reference (IDOR) vulnerability
| Vendor | Product | Versions |
|---|---|---|
Octopus Deploy | Octopus Server | affected 2022.1.2121 - < unspecifiedaffected unspecified - < 2022.1.3135affected 2022.2.6729 - < unspecifiedaffected unspecified - < 2022.2.7897affected 2022.3.348 - < unspecified+1 more versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now