High severity8.8NVD Advisory· Published May 10, 2022· Updated Jun 17, 2026
CVE-2022-1397
CVE-2022-1397
Description
API Privilege Escalation in GitHub repository alextselegidis/easyappointments prior to 1.5.0. Full system takeover.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
alextselegidis/easyappointmentsPackagist | <= 1.4.3 | — |
Affected products
3- cpe:2.3:a:easyappointments:easyappointments:*:*:*:*:*:*:*:*Range: <1.5.0
- alextselegidis/alextselegidis/easyappointmentsv5Range: unspecified
Patches
Vulnerability mechanics
References
4- github.com/alextselegidis/easyappointments/commit/63dbb51decfcc1631c398ecd6d30e3a337845526nvdPatchTechnical DescriptionWEB
- huntr.dev/bounties/5f69e094-ab8c-47a3-b01d-8c12a3b14c61nvdExploitIssue TrackingPatchTechnical DescriptionWEB
- github.com/advisories/GHSA-7f62-4887-cfv5ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-1397ghsaADVISORY
News mentions
0No linked articles in our index yet.