The Undertow module of WildFly 9.x prior to 9.0.0.CR2 and 10.x prior to 10.0.0.Alpha1 allows remote malicious users to obtain the source code of a JSP page via a "/" at the end of a URL.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat jboss wildfly application server 9.0.0 |