From e4fed28fc274d1a74e0c9136eb6302531376b689 Mon Sep 17 00:00:00 2001 From: GitHub Action Date: Sat, 9 Apr 2022 15:50:05 +0000 Subject: [PATCH] Auto Generated CVE annotations [Sat Apr 9 15:50:05 UTC 2022] :robot: --- cves/2022/CVE-2022-0482.yaml | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/cves/2022/CVE-2022-0482.yaml b/cves/2022/CVE-2022-0482.yaml index 40ec672cba..7c91ad8997 100644 --- a/cves/2022/CVE-2022-0482.yaml +++ b/cves/2022/CVE-2022-0482.yaml @@ -3,7 +3,7 @@ id: CVE-2022-0482 info: name: Easy!Appointments Broken Access Control author: francescocarlucci,opencirt - severity: high + severity: critical description: | Exposure of Private Personal Information to an Unauthorized Actor in GitHub repository alextselegidis/easyappointments prior to 1.4.3. reference: @@ -11,6 +11,11 @@ info: - https://nvd.nist.gov/vuln/detail/CVE-2022-0482 - https://github.com/alextselegidis/easyappointments tags: cve,cve2022,easyappointments + classification: + cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N + cvss-score: 9.10 + cve-id: CVE-2022-0482 + cwe-id: CWE-863 requests: - raw: