SIEMENS-SSA-492173
·
Published 2022-07-12
·
View on Siemens ProductCERT ↗
SSA-492173 V1.0: Expression Injection Vulnerability in Mendix Applications
CVSS N/A
MEDIUM
Risk Summary
<p> An expression injection vulnerability was discovered in the Workflow processing of Mendix Runtime, that can affect the running applications. The vulnerability could allow a malicious user to leak sensitive information if the Workflow visual language of Mendix is used. </p> <p> Mendix has released updates for the affected product lines, recommends to update to the latest versions and to redeploy the applications. </p>
Remediations
- Refer to Siemens ProductCERT advisory for patch and remediation guidance.
Affected Vendors
Siemens
Affected Products (1)
Siemens
·
SSA-492173 V1.0: Expression Injection Vulnerability in Mendix Applications
See advisory
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more