{"id":"CVE-2022-22475","details":"IBM WebSphere Application Server Liberty and Open Liberty 17.0.0.3 through 22.0.0.5 are vulnerable to identity spoofing by an authenticated user. IBM X-Force ID: 225603.","modified":"2026-04-12T04:41:43.698205Z","published":"2022-05-17T17:15:08.207Z","references":[{"type":"ADVISORY","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/225603"},{"type":"FIX","url":"https://www.ibm.com/support/pages/node/6586734"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/openliberty/open-liberty","events":[{"introduced":"d5b78203f22c0194319ddd18b7564393a0e22165"},{"last_affected":"74fd263021153f85d2b604a7c1fa1bfa5ff28612"}],"database_specific":{"source":"CPE_FIELD","cpe":["cpe:2.3:a:ibm:open_liberty:*:*:*:*:*:*:*:*","cpe:2.3:a:ibm:websphere_application_server:*:*:*:*:liberty:*:*:*"],"extracted_events":[{"introduced":"17.0.0.3"},{"last_affected":"22.0.0.5"}]}}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-22475.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"}]}