CVE-2022-35628

Source
https://cve.org/CVERecord?id=CVE-2022-35628
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-35628.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-35628
Aliases
Published
2022-07-12T23:15:14.093Z
Modified
2026-02-12T00:52:16.721500Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A SQL injection issue was discovered in the lux extension before 17.6.1, and 18.x through 24.x before 24.0.2, for TYPO3.

References

Affected packages

Git / github.com/in2code-de/lux

Affected ranges

Type
GIT
Repo
https://github.com/in2code-de/lux
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Introduced
Fixed

Affected versions

18.*
18.0.0
18.1.0
18.1.1
19.*
19.0.0
19.0.1
19.0.2
19.0.3
20.*
20.0.0
20.0.1
20.1.0
20.2.0
20.2.1
20.2.2
21.*
21.0.0
21.1.0
21.2.0
21.3.0
21.4.0
22.*
22.0.0
22.1.0
22.2.0
22.3.0
22.3.1
22.3.2
22.3.3
22.4.0
22.5.0
22.6.0
23.*
23.0.0
23.1.0
23.2.0
23.2.1
23.3.0
24.*
24.0.0
24.0.1

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-35628.json"