In AdGuardHome, versions v0.95 through v0.108.0-b.13 are vulnerable to Cross-Site Request Forgery (CSRF), in the custom filtering rules functionality. An attacker can persuade an authorized user to follow a malicious link, resulting in deleting/modifying the custom filtering rules.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-32175.json"
[
{
"events": [
{
"introduced": "0.95"
},
{
"fixed": "0.108"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-NA"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta1"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta10"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta11"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta12"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta2"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta3"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta4"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta7"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta8"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "0.108-beta9"
}
]
}
]