Listed below are 1 of the newest known vulnerabilities associated with the software "Spring Data Rest" by "Vmware".

These CVEs are retrieved based on exact matches on listed software and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-22047 In Spring Data REST versions 3.4.0 - 3.4.13, 3.5.0 - 3.5.5, and older unsupported versions, HTTP resources implemented by cus... 5.3 - MEDIUM 2021-10-28 2021-11-01

CVE-2017-8046: RCE in PATCH requests in Spring Data REST | Security

G CCVE-2017-8046: RCE in PATCH requests in Spring Data REST | Security Severity Critical Vendor Description Malicious PATCH requests submitted to servers using Spring Data REST : 8 6 backed HTTP resources can use specially crafted JSON data ! Java code. Spring Data REST = ; 9 versions prior to 2.6.9 Ingalls SR9 , 3.0.1 Kay SR1 . Spring Boot if Spring Data REST 6 4 2 module is used versions prior to 1.5.9, 2.0 M6. Spring Data REST & 2.6.9 Ingalls SR9, Oct. 27th, 2017 .

