Skip to content

Security vulnerabilities in Spring v2.5.6 and v3.2.4 [SPR-10912] #15540

@spring-projects-issues

Description

@spring-projects-issues

Nick Bletzer opened SPR-10912 and commented

I am part of IBM's security team. As an industry service, we have an ongoing project to security scan the Open Source Software components that are regularly used by IBM teams and pass details of any security vulnerabilities found back to the OSS community in question.

I have recently scanned Spring v.2.5.6 and v3.2.4 and have produced some reports.

Can someone get in touch with me so I can securely pass these reports to the Spring community.

Thanks,
Nick Bletzer
IBM Security Specialist


Affects: 3.2.4

Backported to: 3.2.6

Metadata

Metadata

Assignees

Labels

status: backportedAn issue that has been backported to maintenance branchestype: bugA general bug

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions