Description
In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising certain lookup queries in the TaskExplorer.
Remediation
References
https://tanzu.vmware.com/security/cve-2020-5428
Related Vulnerabilities
CVE-2020-6858 Vulnerability in maven package com.hotels.styx:styx-server
CVE-2020-36183 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2014-3741 Vulnerability in npm package printer
CVE-2016-10669 Vulnerability in npm package soci
CVE-2021-33036 Vulnerability in maven package org.apache.hadoop:hadoop-yarn-server-common