QID 982363
QID 982363: Java (maven) Security Update for org.jboss.resteasy:resteasy-client-microprofile (GHSA-hr32-mgpm-qf2f)
A flaw was found in RESTEasy client in all versions of RESTEasy up to 4.5.6.Final. It may allow client users to obtain the server's potentially sensitive information when the server got WebApplicationException from the RESTEasy client call. The highest threat from this vulnerability is to data confidentiality.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-hr32-mgpm-qf2f for updates pertaining to this vulnerability.
Vendor References
- GHSA-hr32-mgpm-qf2f -
github.com/advisories/GHSA-hr32-mgpm-qf2f
CVEs related to QID 982363
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-hr32-mgpm-qf2f | org.jboss.resteasy:resteasy-client |
|
|
| GHSA-hr32-mgpm-qf2f | org.jboss.resteasy:resteasy-client-microprofile |
|