Description
A flaw was found in wildfly. The JBoss EJB client has publicly accessible privileged actions which may lead to information disclosure on the server it is deployed on. The highest threat from this vulnerability is to data confidentiality.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1929479
Related Vulnerabilities
CVE-2022-42129 Vulnerability in maven package com.liferay:com.liferay.dynamic.data.mapping.form.web
CVE-2021-21028 Vulnerability in maven package com.adobe.acs:acs-aem-commons
CVE-2017-14735 Vulnerability in maven package org.owasp.antisamy:antisamy
CVE-2020-6462 Vulnerability in npm package electron
CVE-2018-16487 Vulnerability in npm package lodash.mergewith