VYPR

Maven package

io.quarkus/quarkus-rest-deployment

pkg:maven/io.quarkus/quarkus-rest-deployment

Vulnerabilities (1)

  • CVE-2025-1247HigFeb 13, 2025
    affected >= 3.16.0.CR1, < 3.18.2fixed 3.18.2

    A flaw was found in Quarkus REST that allows request parameters to leak between concurrent requests if endpoints use field injection without a CDI scope. This vulnerability allows attackers to manipulate request data, impersonate users, or access sensitive information.