Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22375
HistoryJan 28, 2020 - 4:34 a.m.

Information Disclosure

2020-01-2804:34:18
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

EPSS

0.001

Percentile

30.9%

sylius/resource-bundle is vulnerable to information disclosure. The vulnerability exists as ResourceBundle did not properly restrict the values of serialization_groups to be passed through the HTTP header.

EPSS

0.001

Percentile

30.9%