Description
In affected versions of Octopus Deploy it is possible to reveal the Space ID of spaces that the user does not have access to view in an error message when a resource is part of another Space.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-35002 | In affected versions of Octopus Deploy it is possible to reveal the Space ID of spaces that the user does not have access to view in an error message when a resource is part of another Space. |
References
| Link | Providers |
|---|---|
| https://advisories.octopus.com/post/2022/sa2022-14/ |
|
History
Wed, 21 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Octopus
Published:
Updated: 2025-05-21T14:58:00.453Z
Reserved: 2022-08-11T00:00:00.000Z
Link: CVE-2022-2760
Updated: 2024-08-03T00:46:04.424Z
Status : Modified
Published: 2022-09-28T12:15:09.553
Modified: 2026-06-17T04:42:31.803
Link: CVE-2022-2760
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-209
Generation of Error Message Containing Sensitive Information
EUVD