Description
In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising certain lookup queries in the TaskExplorer.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-0910 | In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising certain lookup queries in the TaskExplorer. |
Github GHSA |
GHSA-878w-7gxp-mc63 | SQL Injection in Spring Cloud Task |
References
| Link | Providers |
|---|---|
| https://tanzu.vmware.com/security/cve-2020-5428 |
|
History
No history.
Status: PUBLISHED
Assigner: pivotal
Published:
Updated: 2024-09-16T23:10:54.746Z
Reserved: 2020-01-03T00:00:00.000Z
Link: CVE-2020-5428
No data.
Status : Modified
Published: 2021-01-27T18:15:13.433
Modified: 2024-11-21T05:34:09.093
Link: CVE-2020-5428
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA