Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-42735


Improper Privilege Management vulnerability in Apache Software Foundation Apache ShenYu. ShenYu Admin allows low-privilege low-level administrators create users with higher privileges than their own. This issue affects Apache ShenYu: 2.5.0. Upgrade to Apache ShenYu 2.5.1 or apply patch https://github.com/apache/shenyu/pull/3958 https://github.com/apache/shenyu/pull/3958 .


Published

2023-02-15T10:15:16.403

Last Modified

2025-03-19T16:15:16.090

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-269
  • Type: Secondary
    CWE-269
  • Type: Secondary
    CWE-269

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application apache shenyu 2.5.0 Yes

References