Description
In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising certain lookup queries in the TaskExplorer.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-0910 | In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising certain lookup queries in the TaskExplorer. |
Github GHSA |
GHSA-878w-7gxp-mc63 | SQL Injection in Spring Cloud Task |
References
| Link | Providers |
|---|---|
| https://tanzu.vmware.com/security/cve-2020-5428 |
|
History
No history.
Status: PUBLISHED
Assigner: pivotal
Published:
Updated: 2024-09-16T23:10:54.746Z
Reserved: 2020-01-03T00:00:00.000Z
Link: CVE-2020-5428
No data.
Status : Modified
Published: 2021-01-27T18:15:13.433
Modified: 2026-06-17T03:21:28.943
Link: CVE-2020-5428
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
EUVD
Github GHSA