First published: Thu Nov 30 2023(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Cocoon. This issue affects Apache Cocoon: from 2.2.0 before 2.3.0. Users are recommended to upgrade to version 2.3.0, which fixes the issue.
Credit: security@apache.org security@apache.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Cocoon | >=2.2.0<2.3.0 | |
maven/org.apache.cocoon:cocoon | >=2.2.0<2.3.0 | 2.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45135 is a SQL injection vulnerability in Apache Cocoon.
CVE-2022-45135 affects Apache Cocoon versions from 2.2.0 to 2.3.0.
To fix CVE-2022-45135, upgrade to Apache Cocoon version 2.3.0.
The severity of CVE-2022-45135 is not specified.
You can find more information about CVE-2022-45135 at the following references: [1], [2], [3].