HIGH | AUGUST 15, 2014 | CVE-2014-3527
Description Affected Spring Products and Versions Mitigation Credit This issue was identified by David Ohsie and brought to our attention by the CAS Development team. References http://cupchino.shop/blog/2014/08/15/cve-2014-3527-fixed-in-spring-security-3-2-5-and…
HIGH | MAY 28, 2014 | CVE-2014-0225
Description Affected Spring Products and Versions Mitigation Credit This issue was discovered and reported responsibly to the Pivotal security team by Nebula(XIAOBAISHAN,CHIBI,HUBEI.CN) HelloWorld security team, DBappsecurity.com security team. Additional…
HIGH | MARCH 11, 2014 | CVE-2014-0054
Description Affected Spring Products and Versions Mitigation Credit This issue was reported to the Spring Framework developers by Spase Markovski. References https://jira.springsource.org/browse/SPR-11376 https://github.com/spring-projects/spring-framework…
HIGH | MARCH 11, 2014 | CVE-2014-0097
Description Affected Spring Products and Versions Mitigation Credit This issue was identified by the Spring Development team. References https://jira.springsource.org/browse/SEC-2500 https://github.com/spring-projects/spring-security/commit/88559882e967085c47a…
MEDIUM | MARCH 11, 2014 | CVE-2014-1904
Description Affected Spring Products and Versions Mitigation Credit This issue was discovered and reported responsibly to the Pivotal security team by Paul Wowk of CAaNES LLC. References https://jira.springsource.org/browse/SPR-11426 https://github.com/spring…
HIGH | JANUARY 14, 2014 | CVE-2013-6429
Description Affected Spring Products and Versions Mitigation Credit This issue was identified by the Spring development team. References https://jira.springsource.org/browse/SPR-11078 History 2014-Jan-15: Initial vulnerability report. 2014-Jun-19: Update to…
LOW | JANUARY 14, 2014 | CVE-2013-6430
Description Affected Spring Products and Versions Mitigation Credit This issue was originally reported to the Spring Framework developers by Jon Passki and the security implications brough to the attention of the Pivotal security team by Arun Neelicattu…
HIGH | AUGUST 22, 2013 | CVE-2013-4152
Description Affected Spring Products and Versions Mitigation Credit These issues were identified by Alvaro Munoz of the HP Enterprise Security Team. References https://github.com/SpringSource/spring-framework/pull/317 History 2013-Aug-22: Initial vulnerability…
HIGH | AUGUST 22, 2013 | CVE-2013-7315
Description Affected Spring Products and Versions Mitigation Credit These issues were identified by Alvaro Munoz of the HP Enterprise Security Team. References https://jira.springsource.org/browse/SPR-10806 History 2013-Aug-22: Initial vulnerability report…