Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ReflectionHelper (org.hibernate.validator.util.ReflectionHelper) in Hibernate Validator 4.1.0 before 4.2.1, 4.3.x before 4.3.2, and 5.x before 5.1.2 allows attackers to bypass Java Security Manager (JSM) restrictions and execute restricted reflection calls via a crafted application.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Red Hat Hibernate Validator 权限许可和访问控制漏洞
Vulnerability Description
Red Hat Hibernate Validator是美国红帽(Red Hat)公司的一套Bean验证框架,它能够验证遵循JavaBean规范编写的Java类,也可使用注解指定一个JavaBean上的约束。 Red Hat Hibernate Validator中的ReflectionHelper(org.hibernate.validator.util.ReflectionHelper)中存在安全漏洞。攻击者可借助特制的应用程序利用该漏洞绕过Java Security Manager (JSM)限制,
CVSS Information
N/A
Vulnerability Type
N/A