Beveiligingsadvies

CVE-2019-3802

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-06-03 13:47:42
Laatst bijgewerkt 2024-09-17 00:22:02
Toegewezen door dell
CVSS-score 3.5
Status PUBLISHED

Beschrijving

This affects Spring Data JPA in versions up to and including 2.1.6, 2.0.14 and 1.11.20. ExampleMatcher using ExampleMatcher.StringMatcher.STARTING, ExampleMatcher.StringMatcher.ENDING or ExampleMatcher.StringMatcher.CONTAINING could return more results than anticipated when a maliciously crafted example value is supplied.