PT-2022-17556 · Softwarex · Softwarex

Published

2022-02-11

·

Updated

2023-01-05

·

CVE-2022-2583

CVSS v3.1

3.7

Low

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions SoftwareX versions prior to 0.7.2
Description A race condition can cause incorrect HTTP request routing. The issue affects the routing of some HTTP requests when using httpauth.
Recommendations For versions prior to 0.7.2, upgrade to version 0.7.2 to resolve the issue. As a temporary workaround, consider restricting the use of httpauth until the patch is applied.

Fix

Race Condition

Weakness Enumeration

Related Identifiers

CVE-2022-2583
GHSA-4348-X292-H437
GHSA-H2X7-2FF6-V32P
GO-2022-0400

Affected Products

Softwarex