Vulnerability CVE-2022-47925


Published: 2023-03-27

Description:
The validate JSON endpoint of the Secvisogram csaf-validator-service in versions < 0.1.0 processes tests with unexpected names. This insufficient input validation of requests by an unauthenticated remote user might lead to a DoS of the process answering the current request while having no effect on other requests.

Type:

CWE-20

(Improper Input Validation)

 References:
https://wid.cert-bund.de/.well-known/csaf/white/2022/bsi-2022-0004.json

Copyright 2026, cxsecurity.com

 

Back to Top