CVE-2022-3607: Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in octoprint/octoprint
Published Oct 19, 2022
·Updated
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository octoprint/octoprint prior to 1.8.3.
Other sources
OctoPrint prior to 1.8.3 is vulnerable to Special Element Injection.
— GitHub
Affected Software
2 affected componentsFixes available
pip/OctoPrint<1.8.3
1.8.3
OctoPrint OctoPrint<1.8.3
Remediation
Event History
Oct 19, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Advisory Published
via GitHub·07:00 PM
Frequently Asked Questions
1
What is the vulnerability ID for this security issue?
The vulnerability ID for this security issue is CVE-2022-3607.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository octoprint/octoprint prior to 1.8.3.'
3
What is the severity of CVE-2022-3607?
The severity of CVE-2022-3607 is medium with a severity value of 6.
4
What software is affected by CVE-2022-3607?
The affected software is Octoprint Octoprint prior to version 1.8.3.
5
How can I fix CVE-2022-3607?
To fix CVE-2022-3607, you should update your Octoprint Octoprint installation to version 1.8.3 or later.