CVE-2022-29405
In Apache Archiva, any registered user can reset password for any users. This is fixed in Archiva 2.2.8
In Apache Archiva, any registered user can reset password for any users. This is fixed in Archiva 2.2.8.
MEDIUM · CVSS 6.5
EPSS 0.01259
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0