Critical severity9.8NVD Advisory· Published Sep 28, 2022· Updated Jun 17, 2026
CVE-2022-40929
CVE-2022-40929
Description
XXL-JOB 2.2.0 has a Command execution vulnerability in background tasks. NOTE: this is disputed because the issues/4929 report is about an intended and supported use case (running arbitrary Bash scripts on behalf of users).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
com.xuxueli:xxl-job-coreMaven | <= 2.2.0 | — |
Affected products
3- XXL-JOB/XXL-JOBdescription
Patches
Vulnerability mechanics
References
3- github.com/xuxueli/xxl-job/issues/2979nvdExploitIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-m54f-rp6r-rrrmghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-40929ghsaADVISORY
News mentions
0No linked articles in our index yet.