CVE Database
/

CVE-2022-34466

Back to search

CVE-2022-34466

Published: Jul 12, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

A vulnerability has been identified in Mendix Applications using Mendix 9 (All versions >= V9.11 < V9.15), Mendix Applications using Mendix 9 (V9.12) (All versions < V9.12.3). An expression injection vulnerability was discovered in the Workflow subsystem of Mendix Runtime, that can affect the running applications. The vulnerability could allow a malicious user to leak sensitive information in a certain configuration.

VendorProductVersions

Siemens

Mendix Applications using Mendix 9

affected
All versions >= V9.11 < V9.15

Siemens

Mendix Applications using Mendix 9 (V9.12)

affected
All versions < V9.12.3

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now