AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-41574

HIGH · CVSS 7.5 EPSS 0.65%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-10-07 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-41574
Severity
HIGH
CVSS
7.5
EPSS
0.65%

Original NVD Description

An access-control vulnerability in Gradle Enterprise 2022.4 through 2022.3.1 allows remote attackers to prevent backups from occurring, and send emails with arbitrary text content to the configured installation-administrator contact address, via HTTP access to an accidentally exposed internal endpoint. This is fixed in 2022.3.2.