High severity7.5NVD Advisory· Published May 19, 2022· Updated Jun 17, 2026
CVE-2022-1670
CVE-2022-1670
Description
When generating a user invitation code in Octopus Server, the validity of this code can be set for a specific number of users. It was possible to bypass this restriction of validity to create extra user accounts above the initial number of invited users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
1- advisories.octopus.com/post/2022/sa2022-04/nvdVendor Advisory
News mentions
0No linked articles in our index yet.