3.1.2
14 years ago
13 days ago
Known vulnerabilities in the org.springframework.hateoas:spring-hateoas package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
Affected versions of this package are vulnerable to Improperly Controlled Modification of Dynamically-Determined Object Attributes via reflective property binding in Note: This is only exploitable if the application enables the COLLECTION_JSON or UBER media types, accepts a How to fix Improperly Controlled Modification of Dynamically-Determined Object Attributes? Upgrade | [1.5.0,2.5.3)[3.0.0-M1,3.0.4) |
Affected versions of this package are vulnerable to Allocation of Resources Without Limits or Throttling via unbounded caching of How to fix Allocation of Resources Without Limits or Throttling? Upgrade | [1.5.0,2.5.3)[3.0.0-M1,3.0.4) |