CVE-2022-32550
15.06.2022, 19:15
An issue was discovered in AgileBits 1Password, involving the method various 1Password apps and integrations used to create connections to the 1Password service. In specific circumstances, this issue allowed a malicious server to convince a 1Password app or integration it is communicating with the 1Password service.Enginsight
Vendor | Product | Version |
---|---|---|
1password | 1password | 7.0 ≤ 𝑥 < 7.9.5 |
1password | 1password | 7.0 ≤ 𝑥 < 7.9.829 |
1password | 1password | 8.0 ≤ 𝑥 < 8.7.1 |
1password | 1password | 8.0 ≤ 𝑥 < 8.7.1 |
1password | 1password | 8.0 ≤ 𝑥 < 8.7.1 |
1password | 1password_in_the_browser | 𝑥 < 2.3.4 |
1password | command-line | 2.0.0 ≤ 𝑥 < 2.3.0 |
1password | command_line_interface | 1.0.0 ≤ 𝑥 < 1.12.5 |
1password | connect | 𝑥 < 1.5.3 |
1password | scim_bridge | 𝑥 < 2.3.2 |
𝑥
= Vulnerable software versions