CISA finally removes dud vulnerability from must-patch list
Briefly

"After reading the [PoC] code, it's obvious the researcher's proof of concept is useless," Baines said. "It doesn't touch the endpoint where the vulnerable code allegedly resides, and the endpoint it does reach doesn't do anything with the provided parameters."
"We conclude that CVE-2022-28958 is not a real vulnerability," Baines stated.
Read at Theregister
[
add
]
[
|
|
]