VYPR
Medium severity4.3NVD Advisory· Published Nov 29, 2022· Updated Jun 17, 2026

CVE-2022-45305

CVE-2022-45305

Description

Insecure permissions in Chocolatey Python3 package v3.11.0 and below grants all users in the Authenticated Users group write privileges for the subfolder C:\Python311 and all files located in that folder.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.