Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rc42-6c7j-7h5r

Опубликовано: 28 апр. 2025
Источник: github
Github: Прошло ревью
CVSS3: 7.3

Описание

Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed

EndpointRequest.to() creates a matcher for null/** if the actuator endpoint, for which the EndpointRequest has been created, is disabled or not exposed.

Your application may be affected by this if all the following conditions are met:

  • You use Spring Security
  • EndpointRequest.to() has been used in a Spring Security chain configuration
  • The endpoint which EndpointRequest references is disabled or not exposed via web
  • Your application handles requests to /null and this path needs protection

You are not affected if any of the following is true:

  • You don't use Spring Security
  • You don't use EndpointRequest.to()
  • The endpoint which EndpointRequest.to() refers to is enabled and is exposed
  • Your application does not handle requests to /null or this path does not need protection

Пакеты

Наименование

org.springframework.boot:spring-boot

maven
Затронутые версииВерсия исправления

<= 2.7.24.2

Отсутствует

Наименование

org.springframework.boot:spring-boot

maven
Затронутые версииВерсия исправления

>= 3.1.0, <= 3.1.15.2

Отсутствует

Наименование

org.springframework.boot:spring-boot

maven
Затронутые версииВерсия исправления

>= 3.2.0, <= 3.2.13.2

Отсутствует

Наименование

org.springframework.boot:spring-boot

maven
Затронутые версииВерсия исправления

>= 3.3.0, <= 3.3.10

3.3.11

Наименование

org.springframework.boot:spring-boot

maven
Затронутые версииВерсия исправления

>= 3.4.0, <= 3.4.4

3.4.5

EPSS

Процентиль: 26%
0.00087
Низкий

7.3 High

CVSS3

Дефекты

CWE-20
CWE-862

Связанные уязвимости

CVSS3: 7.3
ubuntu
8 месяцев назад

EndpointRequest.to() creates a matcher for null/** if the actuator endpoint, for which the EndpointRequest has been created, is disabled or not exposed. Your application may be affected by this if all the following conditions are met: * You use Spring Security * EndpointRequest.to() has been used in a Spring Security chain configuration * The endpoint which EndpointRequest references is disabled or not exposed via web * Your application handles requests to /null and this path needs protection You are not affected if any of the following is true: * You don't use Spring Security * You don't use EndpointRequest.to() * The endpoint which EndpointRequest.to() refers to is enabled and is exposed * Your application does not handle requests to /null or this path does not need protection

CVSS3: 7.3
redhat
8 месяцев назад

EndpointRequest.to() creates a matcher for null/** if the actuator endpoint, for which the EndpointRequest has been created, is disabled or not exposed. Your application may be affected by this if all the following conditions are met: * You use Spring Security * EndpointRequest.to() has been used in a Spring Security chain configuration * The endpoint which EndpointRequest references is disabled or not exposed via web * Your application handles requests to /null and this path needs protection You are not affected if any of the following is true: * You don't use Spring Security * You don't use EndpointRequest.to() * The endpoint which EndpointRequest.to() refers to is enabled and is exposed * Your application does not handle requests to /null or this path does not need protection

CVSS3: 7.3
nvd
8 месяцев назад

EndpointRequest.to() creates a matcher for null/** if the actuator endpoint, for which the EndpointRequest has been created, is disabled or not exposed. Your application may be affected by this if all the following conditions are met: * You use Spring Security * EndpointRequest.to() has been used in a Spring Security chain configuration * The endpoint which EndpointRequest references is disabled or not exposed via web * Your application handles requests to /null and this path needs protection You are not affected if any of the following is true: * You don't use Spring Security * You don't use EndpointRequest.to() * The endpoint which EndpointRequest.to() refers to is enabled and is exposed * Your application does not handle requests to /null or this path does not need protection

EPSS

Процентиль: 26%
0.00087
Низкий

7.3 High

CVSS3

Дефекты

CWE-20
CWE-862