CVE-2022-48306 is an improper certificate validation vulnerability affecting the Gotham Chat IRC helper in Palantir Gotham versions prior to 30221005.210011.9242. This medium-severity vulnerability (CVSS 6.8) requires a privileged network attacker to perform a man-in-the-middle attack, potentially allowing them to intercept, read, or modify network communications. There is currently no evidence of active exploitation, publicly available exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 30221005.210011.9242CPE matchmatch criteria | cpe:2.3:o:palantir:gotham_chat_irc:*:*:*:*:*:palantir:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.