Description
RESTEasy allows remote authenticated users to obtain sensitive information by leveraging "insufficient use of random values" in async jobs.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5455 | RESTEasy allows remote authenticated users to obtain sensitive information by leveraging "insufficient use of random values" in async jobs. |
Github GHSA |
GHSA-vxhj-3x7p-jxp5 | Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy |
Ubuntu USN |
USN-7630-1 | RESTEasy vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T01:29:19.490Z
Reserved: 2016-07-26T00:00:00.000Z
Link: CVE-2016-6345
No data.
Status : Modified
Published: 2016-09-07T18:59:02.077
Modified: 2026-05-06T22:30:45.220
Link: CVE-2016-6345
OpenCVE Enrichment
No data.
EUVD
Github GHSA
Ubuntu USN