/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2022-45935

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2022-45935

Severity

5.5

Medium

CVSS V3

Description

Usage of temporary files with insecure permissions by the Apache James server allows an attacker with local access to access private user data in transit.

Vulnerable components includes the SMTP stack and IMAP APPEND command.

This issue affects Apache James server version 3.7.2 and prior versions.

References

  • https://images.chainguard.dev/security/CGA-vj69-5755-v554

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing