CVE-2022-0622: Generation of Error Message Containing Sensitive Information in snipe/snipe-it
Published Feb 17, 2022
·Updated
Generation of Error Message Containing Sensitive Information in Packagist snipe/snipe-it prior to 5.3.11.
Affected Software
3 affected components
Snipeitapp Snipe-it<=5.3.10
Snipeitapp Snipe-it=6.0.0-rc1
Snipeitapp Snipe-it=6.0.0-rc2
Remediation
Event History
Feb 17, 2022
CVE Published
via MITRE·02:05 AM
Data Sourced
via MITRE·02:05 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-0622.
2
What is the severity of CVE-2022-0622?
CVE-2022-0622 has a severity level of medium.
3
What is the affected software for CVE-2022-0622?
The affected software for CVE-2022-0622 is Snipeitapp Snipe-it versions up to 5.3.10, 6.0.0-rc1, and 6.0.0-rc2.
4
How can I fix CVE-2022-0622?
To fix CVE-2022-0622, you should update Snipeitapp Snipe-it to version 5.3.11 or newer.
5
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-209.