ZeroHour

CVE-2022-24947

CVSS 3.1
8.8 high
EPSS
1%p65
Published
()
Modified
Description

Apache JSPWiki user preferences form is vulnerable to CSRF attacks, which can lead to account takeover. Apache JSPWiki users should upgrade to 2.11.2 or later.

Vendors
apache
Products
jspwiki
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.