Description
In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising certain lookup queries in the TaskExplorer.
Remediation
References
https://tanzu.vmware.com/security/cve-2020-5428
Related Vulnerabilities
CVE-2022-24999 Vulnerability in maven package org.webjars:qs
CVE-2021-41571 Vulnerability in maven package org.apache.pulsar:pulsar
CVE-2022-36900 Vulnerability in maven package com.compuware.jenkins:compuware-zadviser-api
CVE-2017-12615 Vulnerability in maven package org.apache.tomcat:tomcat-catalina