← Back to browse
·
API
CVE-2022-2023
Severity
CRITICAL
CVSS
10.0
EPSS
0.03046
Risk score
41.07
CISA KEV
No
PoC
No
Published
2022-06-20
Modified
2024-08-03
First seen
2026-08-08
Aliases
EUVD-2022-34328, GHSA-H97Q-54JX-527J
Products
polonel:polonel/trudesk unspecified <1.2.4
Sources
euvd
EUVD-2022-34328
Description
Incorrect Use of Privileged APIs in GitHub repository polonel/trudesk prior to 1.2.4.
References
https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-34328
https://huntr.dev/bounties/0f35b1d3-56e6-49e4-bc5a-830f52e094b3
https://github.com/polonel/trudesk/commit/83fd5a89319ba2c2f5934722e39b08aba9b3a4ac