CVE-2022-3065: Improper Access Control in jgraph/drawio
Published Sep 2, 2022
·Updated
Improper Access Control in GitHub repository jgraph/drawio prior to 20.2.8.
Affected Software
1 affected component
Diagrams Drawio<20.2.8
Remediation
Event History
Sep 2, 2022
CVE Published
via MITRE·06:15 PM
Data Sourced
via MITRE·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-3065?
The severity of CVE-2022-3065 is high with a severity value of 7.5.
2
What is the affected software of CVE-2022-3065?
The affected software of CVE-2022-3065 is Diagrams Drawio prior to version 20.2.8.
3
How can I fix CVE-2022-3065?
To fix CVE-2022-3065, update Diagrams Drawio to version 20.2.8 or later.
4
What is the CWE of CVE-2022-3065?
The CWE of CVE-2022-3065 is CWE-284.
5
Where can I find more information about CVE-2022-3065?
You can find more information about CVE-2022-3065 at the following references: [Reference 1](https://github.com/jgraph/drawio/commit/59887e45b36f06c8dd4919a32bacd994d9f084da), [Reference 2](https://huntr.dev/bounties/5f3bc4b6-1d53-46b7-a23d-70f5faaf0c76).