VYPR
Medium severity5.9OSV Advisory· Published Dec 8, 2020· Updated Jun 17, 2026

CVE-2020-27822

CVE-2020-27822

Description

A flaw was found in Wildfly affecting versions 19.0.0.Final, 19.1.0.Final, 20.0.0.Final, 20.0.1.Final, and 21.0.0.Final. When an application uses the OpenTracing API's java-interceptors, there is a possibility of a memory leak. This flaw allows an attacker to impact the availability of the server. The highest threat from this vulnerability is to system availability.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.wildfly:wildfly-parentMaven
>= 19.0.0.Final, < 21.0.2.Final21.0.2.Final
org.wildfly:wildfly-parentMaven
>= 22.0.0.Alpha1, < 22.0.0.Beta122.0.0.Beta1

Affected products

8
  • Range: 10.0.0.Alpha1, 10.0.0.Alpha2, 10.0.0.Alpha3, …
  • ghsa-coords2 versions
    >= 19.0.0.Final, < 21.0.2.Final+ 1 more
    • (no CPE)range: >= 19.0.0.Final, < 21.0.2.Final
    • (no CPE)range: >= 19.0.0, < 19.0.1
  • Red Hat/WildFly5 versions
    cpe:2.3:a:redhat:wildfly:19.0.0:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:redhat:wildfly:19.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:wildfly:19.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:wildfly:20.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:wildfly:20.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:wildfly:21.0.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.