{"cvss":9.8,"datePublished":"2022-04-14","dateUpdated":"2022-04-14","description":"VMware Workspace ONE Access and Identity Manager allow for remote code execution due to server-side template injection.","dueDate":"2022-05-05","id":"CVE-2022-22954","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Known","notes":"https://nvd.nist.gov/vuln/detail/CVE-2022-22954","product":"Workspace ONE Access and Identity Manager","requiredAction":"Apply updates per vendor instructions.","severity":"CRITICAL","source":"cisa_known_exploited","title":"VMware Workspace ONE Access and Identity Manager Server-Side Template Injection Vulnerability","vendor":"VMware"}