CVE-2022-4116: Code Injection
A vulnerability was found in quarkus. This issue occurs in Dev UI Config Editor, which is vulnerable to drive-by localhost attacks leading to remote code execution.
Other sources
A vulnerability was found in quarkus. This security flaw happens in Dev UI Config Editor which is vulnerable to drive-by localhost attacks leading to remote code execution.
Dev UI Config Editor is vulnerable to drive-by localhost attacks leading to RCE
— Red Hat
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the vulnerability ID for this issue in quarkus?
The vulnerability ID for this issue in quarkus is CVE-2022-4116.
What is the severity of CVE-2022-4116?
The severity of CVE-2022-4116 is high with a score of 7.5.
Where can I find more information about CVE-2022-4116?
You can find more information about CVE-2022-4116 at the following references: [CVE-2022-4116](https://www.cve.org/CVERecord?id=CVE-2022-4116), [NVD](https://nvd.nist.gov/vuln/detail/CVE-2022-4116), [Red Hat Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=2144748), [Red Hat Errata](https://access.redhat.com/errata/RHSA-2022:9023).
What is the affected software for CVE-2022-4116?
The affected software for CVE-2022-4116 is quarkus.
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is CWE-94.