All 2 CVE vulnerabilities found in esapi-java-legacy, with AI-generated Chinese analysis, references, and POCs.
Vendor: ESAPI
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-5878 | ESAPI esapi-java-legacy SQL Injection Defense Encoder.encodeForSQL special element CWE-138 | 7.3 | High | 2025-06-29 |
| CVE-2022-24891 | Cross-site Scripting in org.owasp.esapi:esapi -- antisamy-esapi.xml configuration file CWE-79 | 5.4 | Medium | 2022-04-27 |
All 2 known CVE vulnerabilities affecting esapi-java-legacy with full Chinese analysis, references, and POCs where available.