4.3
CVSSv3

CVE-2022-31684

Published: 19/10/2022 Updated: 21/10/2022
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Description<!---->A flaw was found in the Reactor Netty HTTP Server, which may log request headers in some cases of invalid HTTP requests. This could allow an malicious user to access privileged information when WARN level logging is enabled.A flaw was found in the Reactor Netty HTTP Server, which may log request headers in some cases of invalid HTTP requests. This could allow an malicious user to access privileged information when WARN level logging is enabled.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pivotal reactor netty

Vendor Advisories

Synopsis Important: Red Hat support for Spring Boot 2713 security update Type/Severity Security Advisory: Important Topic An update is now available for Red Hat OpenShift Application RuntimesRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) base score, whic ...
Synopsis Moderate: Red Hat Camel for Spring Boot 3183 release and security update Type/Severity Security Advisory: Moderate Topic A minor version update (from 3145 to 3183) is now available for Camel for Spring Boot The purpose of this text-only errata is to inform you about the security issues fixed in this releaseRed Hat Product Sec ...
Description<!---->A flaw was found in the Reactor Netty HTTP Server, which may log request headers in some cases of invalid HTTP requests This could allow an attacker to access privileged information when WARN level logging is enabledA flaw was found in the Reactor Netty HTTP Server, which may log request headers in some cases of invalid HTTP req ...