Vulnerability Database
Blog
FAQ
Docs
CVE-2022-3438
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2022-3438
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-3438.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-3438
Aliases
GHSA-8g9m-vv69-7j99
PYSEC-2022-43158
Published
2022-10-10T12:15:09Z
Modified
2024-11-21T14:59:43.509655Z
Severity
6.1 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
Open Redirect in GitHub repository ikus060/rdiffweb prior to 2.5.0a4.
References
https://huntr.dev/bounties/bc5689e4-221a-4200-a8ab-42c659f89f67
https://github.com/ikus060/rdiffweb/commit/4d464b467f14b8eb9103d7f5f0774e49995527c7
Affected packages
Git
/
github.com/ikus060/rdiffweb
Affected ranges
Type
GIT
Repo
https://github.com/ikus060/rdiffweb
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
4d464b467f14b8eb9103d7f5f0774e49995527c7
Type
GIT
Repo
https://gitlab.com/ikus-soft/rdiffweb
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
44a2b075c21fe0858a2087c2e19175738622e13d
Affected versions
0.*
0.10.0
0.10.2
0.10.4
0.10.5
0.10.6
0.10.7
0.10.8
0.10.9
0.7.0
0.8.1
0.9.1
0.9.2
0.9.3
0.9.5
1.*
1.0.0
1.0.0a1
1.0.0a2
1.0.0a3
1.0.0a4
1.0.1
1.0.2
1.0.3
1.1.0
1.2.0
1.2.1
1.2.2
1.3.0
1.3.1
1.3.1b1
1.3.1b2
1.3.2
1.4.0
1.4.0b1
1.4.0b2
1.4.0b3
1.4.0b4
1.4.0b5
1.4.1b1
1.4.1b2
1.4.1b3
1.5.0
1.5.1b1
1.5.1b2
1.6.0b1
2.*
2.0.0
2.0.1
2.0.1b1
2.0.1b3
2.0.2
2.0.3a2
2.0.3a4
2.0.3a5
2.0.3a6
2.0.3a7
2.1.0
2.2.0.dev1
2.2.0a1
2.2.0a2
2.2.0a3
2.2.0a4
2.2.0a5
2.2.0a6
2.2.1
2.3.0
2.3.1
2.3.2
2.3.3
2.3.4
2.3.6
2.3.7
2.3.7rc1
2.3.8
2.3.9
2.3.9.rc1
2.3.9a1
2.3.9a2
2.4.0
2.4.0.a8
2.4.0a1
2.4.0a2
2.4.0a3
2.4.0a4
2.4.0a5
2.4.0a6
2.4.0a7
2.4.1
2.4.2
2.4.3
2.4.4
2.4.5
2.5.0a1
2.5.0a2
2.5.0a3
2.5.0a4
2.5.0a5
2.5.0a6
2.5.0a7
2.5.0a8
2.5.0a9
v0.*
v0.6.4
v0.6.5
v0.7.0
CVE-2022-3438 - OSV