Description
In Spring Framework versions 5.3.0 - 5.3.10, 5.2.0 - 5.2.17, and older unsupported versions, it is possible for a user to provide malicious input to cause the insertion of additional log entries.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5162 | In Spring Framework versions 5.3.0 - 5.3.10, 5.2.0 - 5.2.17, and older unsupported versions, it is possible for a user to provide malicious input to cause the insertion of additional log entries. |
Github GHSA |
GHSA-rfmp-97jj-h8m6 | Improper Output Neutralization for Logs in Spring Framework |
References
History
No history.
Subscriptions
Netapp
Subscribe
Active Iq Unified Manager
Subscribe
Management Services For Element Software And Netapp Hci
Subscribe
Metrocluster Tiebreaker
Subscribe
Snap Creator Framework
Subscribe
Snapcenter
Subscribe
Oracle
Subscribe
Communications Cloud Native Core Console
Subscribe
Communications Cloud Native Core Service Communication Proxy
Subscribe
Redhat
Subscribe
Jboss Enterprise Bpms Platform
Subscribe
Jboss Enterprise Brms Platform
Subscribe
Jboss Fuse
Subscribe
Rhev Manager
Subscribe
Vmware
Subscribe
Spring Framework
Subscribe
Status: PUBLISHED
Assigner: vmware
Published:
Updated: 2024-08-03T18:30:23.932Z
Reserved: 2021-01-04T00:00:00.000Z
Link: CVE-2021-22096
No data.
Status : Modified
Published: 2021-10-28T16:15:07.733
Modified: 2024-11-21T05:49:31.290
Link: CVE-2021-22096
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA