CVE-2022-2781
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.2%
exploitation probability
0.2%top 90% of all CVEs
observed exploitation
nono source reports it
In affected versions of Octopus Server it was identified that the same encryption process was used for both encrypting session cookies and variables.
Affected products
Octopus Deploy · Octopus Server