Critical severity9.8NVD Advisory· Published Jul 28, 2022· Updated Jun 17, 2026
CVE-2022-34558
CVE-2022-34558
Description
WMAgent v1.3.3rc2 and 1.3.3rc1, reqmgr 2 1.4.1rc5 and 1.4.0rc2, reqmon 1.4.1rc5, and global-workqueue 1.4.1rc5 allows attackers to execute arbitrary code via a crafted dbs-client package.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
wmagentPyPI | >= 1.3.3rc1, < 2.0.4 | 2.0.4 |
reqmgr2PyPI | >= 1.4.0rc2, < 2.0.4 | 2.0.4 |
reqmonPyPI | >= 1.4.1rc5, < 2.0.4 | 2.0.4 |
global-workqueuePyPI | >= 1.4.1rc5, < 2.0.4 | 2.0.4 |
Affected products
5- WMAgent/WMAgentdescription
- ghsa-coords4 versions
>= 1.4.1rc5, < 2.0.4+ 3 more
- (no CPE)range: >= 1.4.1rc5, < 2.0.4
- (no CPE)range: >= 1.4.0rc2, < 2.0.4
- (no CPE)range: >= 1.4.1rc5, < 2.0.4
- (no CPE)range: >= 1.3.3rc1, < 2.0.4
Patches
Vulnerability mechanics
References
6- github.com/dmwm/WMCore/issues/11188nvdExploitIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-4vq7-8699-4xgcghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-34558ghsaADVISORY
- github.com/pypa/advisory-database/tree/main/vulns/global-workqueue/PYSEC-2022-43136.yamlghsaWEB
- github.com/pypa/advisory-database/tree/main/vulns/reqmon/PYSEC-2022-43163.yamlghsaWEB
- github.com/pypa/advisory-database/tree/main/vulns/wmagent/PYSEC-2022-43174.yamlghsaWEB
News mentions
0No linked articles in our index yet.