Security Advisory

CVE-2022-29215

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-21 00:05:10
Last updated 2025-04-23 18:23:03
Assigner GitHub_M
State PUBLISHED

Description

RegionProtect is a plugin that allows users to manage certain events in certain regions of the world. Versions prior to 1.1.0 contain a YAML injection vulnerability that can cause an instant server crash if the passed arguments are not matched. Version 1.1.0 contains a patch for this issue. As a workaround, restrict operator permissions to untrusted people and avoid entering arguments likely to cause a crash.