VMware

Spring Cloud Netflix

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 86.69%
  • Published 19.11.2021 16:15:07
  • Last modified 21.11.2024 05:49:30

Applications using both `spring-cloud-netflix-hystrix-dashboard` and `spring-boot-starter-thymeleaf` expose a way to execute code submitted within the request URI path during the resolution of view templates. When a request is made at `/hystrix/monit...

  • EPSS 91.81%
  • Published 07.08.2020 21:15:10
  • Last modified 21.11.2024 05:34:07

Spring Cloud Netflix, versions 2.2.x prior to 2.2.4, versions 2.1.x prior to 2.1.6, and older unsupported versions allow applications to use the Hystrix Dashboard proxy.stream endpoint to make requests to any server reachable by the server hosting th...