PT-2022-16068 · Alpine · Alpine

Alvaro Muñoz

+1

·

Published

2022-12-28

·

Updated

2024-08-05

·

CVE-2022-23553

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Alpine versions prior to 1.10.4
Description Alpine is a scaffolding library in Java that allows URL access filter bypass. This issue has been fixed in version 1.10.4.
Recommendations For versions prior to 1.10.4, update to version 1.10.4 to resolve the issue.

Exploit

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2022-23553
GHSA-2W4P-2HF7-GH8X

Affected Products

Alpine