80% of Spring framework downloads are exploitable versions
Data from Sonatype suggests that 80 percent of weekly Spring framework downloads are still exploitable versions.
Spring is a mighty popular framework—often ranking in the top three most-used Java frameworks. That’s why the Java developer community was shaken when a vulnerability named Spring4Shell (CVE-2022-22965) was leaked by a security researcher ahead of an official CVE publication.
Spring4Shell allows unauthenticated remote code execution. This week, the US...
Recent Comments