High severity7.5NVD Advisory· Published Oct 7, 2022· Updated Jun 17, 2026
CVE-2022-41574
CVE-2022-41574
Description
An access-control vulnerability in Gradle Enterprise 2022.4 through 2022.3.1 allows remote attackers to prevent backups from occurring, and send emails with arbitrary text content to the configured installation-administrator contact address, via HTTP access to an accidentally exposed internal endpoint. This is fixed in 2022.3.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Gradle/Gradle Enterprisedescription
Patches
Vulnerability mechanics
References
2- security.gradle.comnvdVendor Advisory
- security.gradle.com/advisory/2022-12nvdMitigationVendor Advisory
News mentions
0No linked articles in our index yet.