{"id":"CGA-cgrf-jvpg-6v26","modified":"2026-07-31T08:12:22.942314186Z","published":"2025-10-30T19:52:21Z","withdrawn":"2026-07-31T08:12:22.942314067Z","upstream":["CVE-2022-45868","GHSA-22wj-vf5f-wrvj"],"references":[{"type":"WEB","url":"https://github.com/h2database/h2database/releases/tag/version-2.2.220"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-22wj-vf5f-wrvj"},{"type":"REPORT","url":"https://github.com/h2database/h2database/issues/3686"},{"type":"FIX","url":"https://github.com/h2database/h2database/pull/3833"},{"type":"WEB","url":"https://github.com/h2database/h2database/blob/96832bf5a97cdc0adc1f2066ed61c54990d66ab5/h2/src/main/org/h2/server/web/WebServer.java#L346-L347"},{"type":"WEB","url":"https://sites.google.com/sonatype.com/vulnerabilities/sonatype-2022-6243"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/45xxx/CVE-2022-45868.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-45868"}],"affected":[{"package":{"name":"keycloak-21.1-compat","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/keycloak-21.1-compat?arch=x86_64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"ecosystem_specific":{"components":[{"latest_event_status":"fix_not_planned","latest_event_timestamp":"2025-05-12T16:39:41Z","architecture":"x86_64","component_name":"h2","component_version":"2.1.214","component_type":"java-archive","component_location":"/opt/bitnami/keycloak/lib/lib/main/com.h2database.h2-2.1.214.jar","component_purl":"pkg:maven/h2@2.1.214"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-cgrf-jvpg-6v26.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AC:L/AV:L/A:H/C:H/I:H/PR:N/S:U/UI:N"}]}