Description
In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising certain lookup queries in the TaskExplorer.
Remediation
References
https://tanzu.vmware.com/security/cve-2020-5428
Related Vulnerabilities
CVE-2016-6794 Vulnerability in maven package org.apache.tomcat:tomcat-util-scan
CVE-2021-45458 Vulnerability in maven package org.apache.kylin:kylin-core-common
CVE-2020-28423 Vulnerability in npm package monorepo-build
CVE-2021-44908 Vulnerability in npm package sails
CVE-2020-15813 Vulnerability in maven package org.graylog2:graylog2-server