CVE-2022-33082

HIGH7.5EPSS 1.1%

Denial of service in Open Policy Agent

Published: 7/1/2022Modified: 2/4/2026
Also known as:GHSA-2m4x-4q9j-w97gCGA-gwh3-f537-q6ffGO-2022-0574

Description

An issue in the AST parser (ast/compile.go) of Open Policy Agent v0.10.2 allows attackers to cause a Denial of Service (DoS) via a crafted input.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

References (8)