Insufficient Control Flow Management
CVE-2022-48481
Summary
In JetBrains Toolbox App before 1.28 a DYLIB injection on macOS was possible
- LOW
- LOCAL
- LOW
- CHANGED
- NONE
- LOW
- LOW
- NONE
CWE-691 - Insufficient Control Flow Management
The code does not sufficiently manage its control flow during execution, creating conditions in which the control flow can be modified in unexpected ways.
References
Advisory Timeline
- Published