Hi Developer, I found that your project uses a vulnerable jar which is undertow-servlet-1.4.16.Final.jar and calls the vulnerable function handleRequest in file ServletInitialHandler.java (See details in Repository undertow-io/undertow, commitid: d2715e3afa13f50deaa19643676816ce391551e9)
The CVE number of this vulnerability is CVE-2019-10184
If this project is still in use, please check it and fix this bug as soon as possible. You can update the imported jar undertow-servlet-1.4.16.Final.jar to version over 2.0.23.Final to avoid this bug, thx.