Red Hat Hibernate Validator 4.3.1

CPE Details

Red Hat Hibernate Validator 4.3.1
4.3.1
2018-08-01
14h12 +00:00
2018-08-01
14h12 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:redhat:hibernate_validator:4.3.1:*:*:*:*:*:*:*

Informations

Vendor

redhat

Product

hibernate_validator

Version

4.3.1

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2019-10219 2019-11-08 13h46 +00:00 A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
6.1
Moyen
CVE-2014-3558 2014-09-30 12h00 +00:00 ReflectionHelper (org.hibernate.validator.util.ReflectionHelper) in Hibernate Validator 4.1.0 before 4.2.1, 4.3.x before 4.3.2, and 5.x before 5.1.2 allows attackers to bypass Java Security Manager (JSM) restrictions and execute restricted reflection calls via a crafted application.
5