CVE-2022-46827: XEE
Published Dec 8, 2022
·Updated
In JetBrains IntelliJ IDEA before 2022.3 an XXE attack leading to SSRF via requests to custom plugin repositories was possible.
Affected Software
1 affected component
JetBrains IntelliJ IDEA<2022.3
Event History
Dec 8, 2022
CVE Published
via MITRE·05:37 PM
Data Sourced
via MITRE·05:37 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this JetBrains IntelliJ IDEA vulnerability?
The vulnerability ID for this JetBrains IntelliJ IDEA vulnerability is CVE-2022-46827.
2
What is the severity of vulnerability CVE-2022-46827?
The severity of vulnerability CVE-2022-46827 is medium.
3
What is the affected software for vulnerability CVE-2022-46827?
The affected software for vulnerability CVE-2022-46827 is JetBrains IntelliJ IDEA before version 2022.3.
4
How does vulnerability CVE-2022-46827 work?
Vulnerability CVE-2022-46827 is an XXE attack that leads to SSRF via requests to custom plugin repositories in JetBrains IntelliJ IDEA before version 2022.3.
5
Is there a fix available for vulnerability CVE-2022-46827?
Yes, a fix is available for vulnerability CVE-2022-46827. It is recommended to update to JetBrains IntelliJ IDEA version 2022.3 or later.