CVE-2022-46265: Siemens Polarion Alm

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability has been identified in Polarion ALM (All versions < V2304.0). The affected application contains a Host header injection vulnerability that could allow an attacker to spoof a Host header information and redirect users to malicious websites.

Affected products

  • Siemens Polarion Alm: before 2304.0 (fixed in 2304.0)

Published 2022-12-13. Last modified 2026-06-17.