VDB
CVE-2022-0722
CVE-2022-0722
PUBLISHED
CVSS 4.8 MEDIUM
Reported by @huntrdev · Published June 27, 2022
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository ionicabizau/parse-url prior to 7.0.0.
Risk Scores
CVSS 3.0
4.8
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ionicabizau | ionicabizau/parse-url | unspecified |
| npm | parse-url | 0 |
| ionicabizau | ionicabizau/parse-url | unspecified, unspecified |
Exploit Intelligence
Timeline
- Jun 27, 2022 CVE Published
- Jun 28, 2022 EPSS Score
- Jul 6, 2022 CVE Updated
- Aug 16, 2022 EPSS Score
- Oct 2, 2022 EPSS Score
- Nov 19, 2022 EPSS Score
- Jan 5, 2023 EPSS Score
- Feb 22, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 11, 2023 EPSS Score
- May 28, 2023 EPSS Score
- Jul 15, 2023 EPSS Score
References
- x_refsource_MISC
- x_refsource_CONFIRM
- https://nvd.nist.gov/vuln/detail/CVE-2022-0722 advisory
- https://github.com/advisories/GHSA-4p35-cfcx-8653 advisory