Uploaded image for project: 'Common Controller SDK'
  1. Common Controller SDK
  2. CCSDK-3629

Critical Security Issue with Spring Framework

XMLWordPrintable

      RCE vulnerability in the Spring Framework.

      It is critical severity, number: CVE-2022-22965.   

      It mainly affects WAR distribution – so not confirmed relevant for us, but currently it is not known what else may be affected.

      Here is further info about it https://spring.io/blog/2022/03/31/spring-framework-rce-early-announcement

      Fortunately, Spring Boot 2.6.6 version fixes it.

       

            JohnKeeney John Keeney
            JohnKeeney John Keeney
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: