Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-1051
HistoryJan 25, 2018 - 8:29 p.m.

Design/Logic Flaw

2018-01-2520:29:00
PRIOn knowledge base
www.prio-n.com
8

7.9 High

AI Score

Confidence

High

0.023 Low

EPSS

Percentile

89.8%

It was found that the fix for CVE-2016-9606 in versions 3.0.22 and 3.1.2 was incomplete and Yaml unmarshalling in Resteasy is still possible via Yaml.load() in YamlProvider.

CPENameOperatorVersion
resteasyeq3.1.2
resteasyeq3.0.22

7.9 High

AI Score

Confidence

High

0.023 Low

EPSS

Percentile

89.8%