io.quarkus:quarkus-resteasy-reactive-parent-aggregator@1.12.0.CR1 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the io.quarkus:quarkus-resteasy-reactive-parent-aggregator package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Information Exposure

io.quarkus:quarkus-resteasy-reactive-parent-aggregator is a Quarkus RESTEasy Reactive Parent Aggregator.

Affected versions of this package are vulnerable to Information Exposure. Under certain conditions and certain workloads, RESTEasy can provide incorrect response to an HTTP request. This flaw allows an attacker to gain access to privileged information.

How to fix Information Exposure?

Upgrade io.quarkus:quarkus-resteasy-reactive-parent-aggregator to version 2.0.0.Alpha3 or higher.

[,2.0.0.Alpha3)