Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-68889
HistoryMay 13, 2022 - 12:00 a.m.

Spring Framework Denial of Service Vulnerability

2022-05-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
26
spring framework
java
dos
vulnerability
multipartfile

EPSS

0.004

Percentile

75.2%

Spring Framework is the U.S. Spring team of a set of Java, JavaEE application framework . The framework helps developers build high-quality applications.Spring Framework 5.3.20 , 5.2.22 before the version of the denial of service vulnerability , the vulnerability stems from the data binding to the MultipartFile lead to Spring Framework fatal error , an attacker can use the vulnerability to cause a denial of service .