VYPR

Spring Web Services

by Cloudfoundry

CVEs (1)

  • CVE-2019-3773CriJan 18, 2019
    risk 0.64cvss 9.8epss 0.04

    Spring Web Services, versions 2.4.3, 3.0.4, and older unsupported versions of all three projects, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.