CVE Database
/

CVE-2022-4008

Back to search

CVE-2022-4008

Published: May 10, 2023

Modified: Jan 28, 2025

PUBLISHED

Description

In affected versions of Octopus Deploy it is possible to upload a zipbomb file as a task which results in Denial of Service

VendorProductVersions

Octopus Deploy

Octopus Tentacle

affected
0.9 - < unspecified
affected
unspecified - < 2022.3.11043
affected
2022.4.791 - < unspecified
affected
unspecified - < 2022.4.8401

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now