Grails is a framework used to build web applications with the Groovy programming language. A specially crafted web request can lead to a JVM crash or denial of service. Any Grails framework application using Grails data binding is vulnerable. This issue has been patched in version 3.3.17, 4.1.3, 5.3.4, 6.1.0.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-3085 | Grails is a framework used to build web applications with the Groovy programming language. A specially crafted web request can lead to a JVM crash or denial of service. Any Grails framework application using Grails data binding is vulnerable. This issue has been patched in version 3.3.17, 4.1.3, 5.3.4, 6.1.0. |
Github GHSA |
GHSA-3pjv-r7w4-2cf5 | Grails data binding causes JVM crash and/or other denial of service |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T20:37:39.816Z
Reserved: 2023-10-16T17:51:35.573Z
Link: CVE-2023-46131
No data.
Status : Modified
Published: 2023-12-21T00:15:25.813
Modified: 2024-11-21T08:27:56.730
Link: CVE-2023-46131
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA