Description
In Spring AMQP versions 2.2.0 - 2.2.19 and 2.3.0 - 2.3.11, the Spring AMQP Message object, in its toString() method, will create a new String object from the message body, regardless of its size. This can cause an OOM Error with a large message
Remediation
References
https://tanzu.vmware.com/security/cve-2021-22097
Related Vulnerabilities
CVE-2018-1999020 Vulnerability in maven package org.onosproject:onos-core-common
CVE-2022-42125 Vulnerability in maven package com.liferay.portal:com.liferay.portal.impl
CVE-2020-15138 Vulnerability in maven package org.webjars:prismjs
CVE-2018-19837 Vulnerability in maven package org.webjars.npm:node-sass
CVE-2020-10719 Vulnerability in maven package io.undertow:undertow-core