CVE-2022-36182: Medium severity hashicorp boundary vulnerability
Hashicorp Boundary v0.8.0 is vulnerable to Clickjacking which allow for the interception of login credentials, re-direction of users to malicious sites, or causing users to perform malicious actions on the site.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-36182?
CVE-2022-36182 is a vulnerability in Hashicorp Boundary v0.8.0 that allows for clickjacking attacks.
How does CVE-2022-36182 impact Hashicorp Boundary?
CVE-2022-36182 allows for the interception of login credentials, redirection to malicious sites, or the performance of malicious actions on the site.
What is the severity of CVE-2022-36182?
CVE-2022-36182 has a severity level of medium with a severity value of 6.1.
How can I fix CVE-2022-36182 in Hashicorp Boundary?
To fix CVE-2022-36182, upgrade Hashicorp Boundary to version 0.11.0 or higher.
What is clickjacking?
Clickjacking is a type of attack where an attacker tricks a user into clicking on a malicious element disguised as a legitimate element on a webpage.