CVE-2022-38179: Medium severity ktor vulnerability
Published Aug 12, 2022
·Updated
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
Affected Software
1 affected component
JetBrains Ktor<2.1.0
Event History
Aug 12, 2022
CVE Published
via MITRE·09:55 AM
Data Sourced
via MITRE·09:55 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-38179.
2
What is the severity rating of CVE-2022-38179?
The severity rating of CVE-2022-38179 is medium.
3
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is 697 and 184.
4
How does the Reflect File Download attack affect JetBrains Ktor before version 2.1.0?
The Reflect File Download attack affects JetBrains Ktor before version 2.1.0 by allowing an attacker to trick a user into downloading an arbitrary file from the server.
5
How can I fix the Reflect File Download vulnerability in JetBrains Ktor before version 2.1.0?
To fix the Reflect File Download vulnerability in JetBrains Ktor, you should update to version 2.1.0 or later.