Vulnerability Details CVE-2022-2466
It was found that Quarkus 2.10.x does not terminate HTTP requests header context which may lead to unpredictable behavior.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.075
EPSS Ranking 91.3%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-2466
-
cpe:2.3:a:quarkus:quarkus:2.10.0
-
cpe:2.3:a:quarkus:quarkus:2.10.1
-
cpe:2.3:a:quarkus:quarkus:2.10.2
-
cpe:2.3:a:quarkus:quarkus:2.10.3