CVE-2022-1289

    Dashboard / Vulnerabilities / CVE-2022-1289

    CVE-2022-1289

    Published: 10 Apr 2022Last Modified: 12 Aug 2026

    Summary: tildearrow Furnace Incomplete Fix CVE-2022-1211 denial of service

    Details: A denial of service vulnerability was found in tildearrow Furnace. It has been classified as problematic. This is due to an incomplete fix of CVE-2022-1211. It is possible to initiate the attack remotely but it requires user interaction. The issue got fixed with the patch 0eb02422d5161767e9983bdaa5c429762d3477ce.

    Affected packages

    Package

    Name:

    Purl:

    Affected ranges

    Type: GIT

    Events:

    Introduced- 217e42471b3ac9a8b9677d501b880642df93fa69

    Affected versions

    0.2
    0.2.1
    0.2.2

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    CVE-2022-1289 | CVE-DB