Description
A flaw was found in wildfly-core. A management user could use the resolve-expression in the HAL Interface to read possible sensitive information from the Wildfly system. This issue could allow a malicious user to access the system and obtain possible sensitive information from the system.
Remediation
References
Related Vulnerabilities
Apache Tomcat CVE-2020-0822 Vulnerability (CVE-2020-0822)
WordPress Plugin Ultimate GDPR & CCPA Compliance Toolkit for WordPress Security Bypass (2.4)
Joomla! Core 3.x.x Cross-Site Scripting (3.0.0 - 3.9.26)
Liferay Portal Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2025-62244)