← back
CVE-2022-0482criticalobserved exploitationCWE-359

Exposure of Private Personal Information to an Unauthorized Actor in alextselegidis/easyappointments

97Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actcvss 9.1epss 39%
from disclosure to weapon35 days
Published on NVDMar 9
1st PoC+35d
VulnCheck+618d
exploitation probability
39%top 2% of all CVEs
observed exploitation
yesVulnCheck
5 public exploit(s)
Exposure of Private Personal Information to an Unauthorized Actor in GitHub repository alextselegidis/easyappointments prior to 1.4.3.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.