CVE-2022-40152 API Gateway
search cancel

CVE-2022-40152 API Gateway

book

Article ID: 444726

calendar_today

Updated On:

Products

CA API Gateway

Issue/Introduction

Does this Woodstox vulnerability affect the API Gateway?

Environment

All supported gateway versions

Resolution

The Gateway is unlikely to be impacted by this CVE, as the Woodstox library is a transitive dependency of Apache CXF. Furthermore, the Gateway's usage of CXF is limited to the process controller API, and the vulnerable functionality within Woodstox is not utilized in this context.