openrouteservice
openrouteservice copied to clipboard
CVE-2024-22243 org.springframework:spring-web (ors.jar)
Scope
pom.xml
Report Link
https://avd.aquasec.com/nvd/cve-2024-22243
Dependency affected
org.springframework:spring-web
Proposed solution / further info
Severity: HIGH Installed version: 6.0.14 Fixed versions: 6.1.4, 6.0.17, 5.3.32 Description: springframework: URL Parsing with Host Validation