First published: Fri Aug 12 2022(Updated: )
In JetBrains Ktor before 2.1.0 the wrong authentication provider could be selected in some cases
Credit: cve@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains Ktor | <2.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38180 is a vulnerability in JetBrains Ktor before version 2.1.0 where the wrong authentication provider could be selected in some cases.
CVE-2022-38180 has a severity score of 6.5 (medium).
CVE-2022-38180 affects JetBrains Ktor before version 2.1.0.
To fix CVE-2022-38180, update JetBrains Ktor to version 2.1.0 or later.
For more information about CVE-2022-38180, you can refer to the following resources: [GitHub Pull Request](https://github.com/ktorio/ktor/pull/3092) and [JetBrains Security Bulletin](https://www.jetbrains.com/privacy-security/issues-fixed/).