CVE-2022-47500 - CVE House
Back to Database
Status published Unknown CVE-2022-47500

Apache Helix: Open redirect

Vulnerability Description

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Apache Software Foundation Apache Helix UI component.This issue affects Apache Helix all releases from 0.8.0 to 1.0.4. Solution: removed the the forward component since it was improper designed for UI embedding.  User please upgrade to 1.1.0 to fix this issue.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-47500

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • This issue was discovered by Everardo Padilla Saca

Affected Vendor

Apache Software Foundation

View all reports →

Affected Software

Apache Helix
Vulnerable Versions:
0.8.0

Timeline

Official Publish: December 19th, 2022
Last Modified: April 17th, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)