15.1.3.Final
13 years ago
25 days ago
Known vulnerabilities in the org.infinispan:infinispan-commons package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
org.infinispan:infinispan-commons is a data grid platform and highly scalable NoSQL cloud data store Affected versions of this package are vulnerable to Privilege Escalation. A vulnerability was found in Infinispan such that the How to fix Privilege Escalation? Upgrade | [,9.4.17.Final)[10.0.0.Alpha1,10.0.0.Final) |
org.infinispan:infinispan-commons is an open source data grid platform. Affected version of this package are vulnerable to Deserialization of Untrusted Data. An authenticated attacker could inject a malicious object into the data cache and attain deserialization on the client, and possibly conduct further attacks. How to fix Deserialization of Untrusted Data? Upgrade | [,9.2.0.CR1) |