Relative Content

Tag Archive for javaspringspring-mvcspring-el

SpEL DoS vulnerability CVE-2022-22950?

Based on the spring website, In Spring Framework versions 5.3.0 - 5.3.16, 5.2.0 - 5.2.19, and older unsupported versions, it is possible for a user to provide a specially crafted SpEL expression that may cause a denial of service condition.