Medium severity4.3NVD Advisory· Published Feb 3, 2023· Updated Jun 17, 2026
CVE-2022-48022
CVE-2022-48022
Description
An issue in the component /api/v1/mentions of Zammad v5.3.0 allows authenticated attackers with agent permissions to view information about tickets they are not authorized to see.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- zammad.com/de/advisories/zaa-2022-13nvdVendor Advisory
News mentions
0No linked articles in our index yet.