CVE-2022-40309
published 2022-11-15CVE-2022-40309: Users with write permissions to a repository can delete arbitrary directories.
medium4.3CVSS 3.1
AVNACLPRLUINSUCNILAN
Users with write permissions to a repository can delete arbitrary directories.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | archiva | < 2.2.9 | 2.2.9 |
| apache_software_foundation | apache_archiva | unspecified – 2.2.8 | — |