First published: Tue Feb 08 2022(Updated: )
Microsoft Power BI Information Disclosure Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft PowerBI-client JS SDK | <2.19.1 | |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-23254 has been classified as a medium severity information disclosure vulnerability.
To fix CVE-2022-23254, update to Microsoft PowerBI-client JS SDK version 2.19.1 or later.
CVE-2022-23254 affects the Microsoft PowerBI-client JS SDK prior to version 2.19.1.
CVE-2022-23254 is an information disclosure vulnerability that can expose sensitive data.
There are no known workarounds for CVE-2022-23254; upgrading the software is recommended.