Description
undertow before version 2.0.23.Final is vulnerable to an information leak issue. Web apps may have their directory structures predicted through requests without trailing slashes via the api.
Remediation
References
Related Vulnerabilities
WordPress Plugin Browser Blocker Cross-Site Scripting (0.5.6)
Ruby Out-of-bounds Write Vulnerability (CVE-2016-2338)
SharePoint CVE-2021-34519 Vulnerability (CVE-2021-34519)
WordPress Plugin WP Image Zoom Denial of Service (1.23)
WebERP Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2018-20420)