← back
CVE-2022-22728CWE-120

libapreq2 multipart form parse memory corruption

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 5.8%
exploitation probability
5.8%top 7% of all CVEs
observed exploitation
nono source reports it
A flaw in Apache libapreq2 versions 2.16 and earlier could cause a buffer overflow while processing multipart form uploads. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.