Vulnerability Details CVE-2022-2466
It was found that Quarkus 2.10.x does not terminate HTTP requests header context which may lead to unpredictable behavior.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.122
EPSS Ranking 93.6%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-2466
-
cpe:2.3:a:quarkus:quarkus:2.10.0
-
cpe:2.3:a:quarkus:quarkus:2.10.1
-
cpe:2.3:a:quarkus:quarkus:2.10.2
-
cpe:2.3:a:quarkus:quarkus:2.10.3