You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
spring-beans is vulnerable to denial of service. An attacker can crash the application through a model object when it sets a multipart file or javax.servlet.Part of a field
CVE
2022-22970
CVSS score
3.5
Vulnerability present in version/s
3.0.3.RELEASE-4.3.30.RELEASE
Found library version/s
3.2.15.RELEASE
Vulnerability fixed in version
5.3.20
Library latest version
6.0.0-M6
Fix
There is no fixed version released in this version range. Apply the below fix or use the updated 5.3.20 or 5.2.22 packages
Veracode Software Composition Analysis
javax.servlet.Part
of a fieldLinks:
The text was updated successfully, but these errors were encountered: