CVE-2019-12416

Publication date

2020-03-19 14:48:52

Family

apache

State

PUBLISHED

Description

we got reports for 2 injection attacks against the DeltaSpike windowhandler.js. This is only active if a developer selected the ClientSideWindowStrategy which is not the default.