Red Hat Hibernate Validator 4.1.0

CPE Details

Red Hat Hibernate Validator 4.1.0
4.1.0
2019-03-21
11h30 +00:00
2019-03-21
11h30 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:redhat:hibernate_validator:4.1.0:*:*:*:*:*:*:*

Informations

Vendor

redhat

Product

hibernate_validator

Version

4.1.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-10219 2019-11-08 13h46 +00:00 A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
6.1
Medium
CVE-2014-3558 2014-09-30 12h00 +00:00 ReflectionHelper (org.hibernate.validator.util.ReflectionHelper) in Hibernate Validator 4.1.0 before 4.2.1, 4.3.x before 4.3.2, and 5.x before 5.1.2 allows attackers to bypass Java Security Manager (JSM) restrictions and execute restricted reflection calls via a crafted application.
5