12.1.9
3 years ago
15 days ago
Known vulnerabilities in the org.eclipse.jetty.ee9:jetty-ee9-jaspi package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
Affected versions of this package are vulnerable to Sensitive Information in Resource Not Removed Before Reuse in the JASPIAuthenticator. An attacker can gain unauthorized access or escalate privileges by exploiting residual How to fix Sensitive Information in Resource Not Removed Before Reuse? Upgrade | [,12.0.34)[12.1.0.alpha0,12.1.8) |