3scale API Management 2 does not perform adequate sanitation for user input in multiple fields. An authenticated user could use this flaw to inject scripts and possibly gain access to sensitive information or conduct further attacks.
History

Fri, 09 May 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2022-10-19T00:00:00.000Z

Updated: 2025-05-09T14:55:15.555Z

Reserved: 2022-04-20T00:00:00.000Z

Link: CVE-2022-1414

cve-icon Vulnrichment

Updated: 2024-08-03T00:03:06.430Z

cve-icon NVD

Status : Modified

Published: 2022-10-19T18:15:11.707

Modified: 2025-05-09T15:15:49.960

Link: CVE-2022-1414

cve-icon Redhat

Severity : Moderate

Publid Date: 2022-04-19T00:00:00Z

Links: CVE-2022-1414 - Bugzilla