Lucene search

K
cvelistRedhatCVELIST:CVE-2022-2466
HistoryAug 31, 2022 - 3:33 p.m.

CVE-2022-2466

2022-08-3115:33:01
CWE-444
redhat
www.cve.org
quarkus 2.10.x
http requests
header context
termination
vulnerability

9.7 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

57.2%

It was found that Quarkus 2.10.x does not terminate HTTP requests header context which may lead to unpredictable behavior.

CNA Affected

[
  {
    "product": "quarkus",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "quarkus 2.10.3"
      }
    ]
  }
]

9.7 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

57.2%