CVE-2022-45930: Linuxfoundation Opendaylight

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/DomainStore.java deleteDomain function is affected for the /auth/v1/domains/ API interface.

Affected products

  • Linuxfoundation Opendaylight: version 0.15.0 only; version 0.15.6 only; version 0.16.0 only; version 0.16.4 only

Published 2022-11-27. Last modified 2026-06-17.