QID 981780
QID 981780: Java (maven) Security Update for org.hibernate.validator:hibernate-validator (GHSA-m8p2-495h-ccmh)
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-m8p2-495h-ccmh for updates pertaining to this vulnerability.
Vendor References
- GHSA-m8p2-495h-ccmh -
github.com/advisories/GHSA-m8p2-495h-ccmh
CVEs related to QID 981780
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-m8p2-495h-ccmh | org.hibernate.validator:hibernate-validator |
|