← KEV catalog
CISA known exploited vulnerability

CVE-2022-24706

Apache CouchDB Insecure Default Initialization of Resource Vulnerability

SOURCE FACT

Apache · CouchDB

Apache CouchDB contains an insecure default initialization of resource vulnerability which can allow an attacker to escalate to administrative privileges.

Required action

Apply updates per vendor instructions.

CISA notes

https://lists.apache.org/thread/w24wo0h8nlctfps65txvk0oc5hdcnv00; https://nvd.nist.gov/vuln/detail/CVE-2022-24706

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?