PT-2024-40646 · Spring · Spring
Published
2024-12-23
·
Updated
2024-12-23
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions:
Spring versions (affected versions not specified)
Description:
The issue is related to a security exception in the
org.springframework.expression.spel.ast.OpPlus.getValueInternal function, which is part of the Spring framework. The crash state involves the java.base/java.util.HashMap.get and org.springframework.core.convert.TypeDescriptor.valueOf functions.Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Spring