New Spring Framework RCE Vulnerability (CVE-2021-22963, SONATYPE-2022-1764)

 

Please see our blog post for the most up to date information regarding the recently discovered Spring Framework RCE vulnerabilities.

New Spring Framework RCE Vulnerability Confirmed - What to do?

To get current details for the vulnerabilities listed in that article you can use the vulnerability lookup in your local IQ Server instance:

https://help.sonatype.com/display/NXIQ/Vulnerability+Lookup

 

Keywords: Springshell, Spring Expression language, SpEL, CVE-2021-22963, SONATYPE-2022-1764, spring-core

Have more questions? Submit a request

0 Comments

Article is closed for comments.