Total vulnerabilities in the database
In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, applications that handle file uploads are vulnerable to DoS attack if they rely on data binding to set a MultipartFile or javax.servlet.Part to a field in a model object.
Software | From | Fixed in |
---|---|---|
vmware / spring_framework | 5.3.0 | 5.3.19.x |
vmware / spring_framework | - | 5.2.21.x |
oracle / financial_services_crime_and_compliance_management_studio | 8.0.8.2.0 | 8.0.8.2.0.x |
oracle / financial_services_crime_and_compliance_management_studio | 8.0.8.3.0 | 8.0.8.3.0.x |
![]() |
- | 5.2.22.RELEASE |
![]() |
5.3.0 | 5.3.20 |