{"id":"GHSA-whph-446h-6m9v","summary":"Azure SDK for .NET Information Disclosure Vulnerability.","details":"Azure SDK for .NET Information Disclosure Vulnerability via undisclosed methods relating to lack of sanitization of exception messages.","aliases":["CVE-2022-26907"],"modified":"2023-11-01T04:58:27.945407Z","published":"2022-04-16T00:00:28Z","database_specific":{"nvd_published_at":"2022-04-15T19:15:00Z","cwe_ids":["CWE-532"],"severity":"MODERATE","github_reviewed":true,"github_reviewed_at":"2023-07-07T21:30:44Z"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-26907"},{"type":"WEB","url":"https://github.com/Azure/azure-sdk-for-net/pull/28169"},{"type":"WEB","url":"https://github.com/Azure/azure-sdk-for-net/commit/e67f2a9fc5aa1060bd465d1458c347671268f6f5"},{"type":"PACKAGE","url":"https://github.com/Azure/azure-sdk-for-net"},{"type":"WEB","url":"https://github.com/Azure/azure-sdk-for-net/blob/a919c48ae294fed084a9679b6f53ac6af3fb4c3a/sdk/mgmtcommon/ClientRuntime/ClientRuntime/Microsoft.Rest.ClientRuntime.csproj#L11"},{"type":"WEB","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26907"},{"type":"WEB","url":"https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-26907"}],"affected":[{"package":{"name":"Microsoft.Rest.ClientRuntime","ecosystem":"NuGet","purl":"pkg:nuget/Microsoft.Rest.ClientRuntime"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.3.24"}]}],"versions":["0.9.4","0.9.5","0.9.6","1.0.0","1.0.1","1.0.2","1.0.3","1.1.0","1.1.1","1.2.0","1.3.0","1.4.0","1.4.1","1.5.0","1.6.0","1.8.0","1.8.1","1.8.2","1.9.0","2.0.0","2.0.1","2.1.0","2.2.0","2.3.0","2.3.1","2.3.10","2.3.11","2.3.12","2.3.13","2.3.14","2.3.15","2.3.16","2.3.17","2.3.18","2.3.19","2.3.2","2.3.20","2.3.21","2.3.22","2.3.23","2.3.3","2.3.4","2.3.5","2.3.6","2.3.7","2.3.8","2.3.9"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/04/GHSA-whph-446h-6m9v/GHSA-whph-446h-6m9v.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N"}]}