VYPR
Medium severity6.1NVD Advisory· Published Mar 19, 2020· Updated Jun 17, 2026

CVE-2019-12416

CVE-2019-12416

Description

we got reports for 2 injection attacks against the DeltaSpike windowhandler.js. This is only active if a developer selected the ClientSideWindowStrategy which is not the default.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.apache.deltaspike:deltaspikeMaven
< 1.9.41.9.4

Affected products

3

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.