Description
In Spring Cloud Function versions prior to 3.2.6, it is possible for a user who directly interacts with framework provided lookup functionality to cause a denial-of-service condition due to the caching issue in the Function Catalog component of the framework.
Remediation
References
https://tanzu.vmware.com/security/cve-2022-22979
Related Vulnerabilities
CVE-2021-22051 Vulnerability in maven package org.springframework.cloud:spring-cloud-gateway-server
CVE-2023-34603 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-parent
CVE-2013-2186 Vulnerability in maven package commons-fileupload:commons-fileupload
CVE-2022-38369 Vulnerability in maven package org.apache.iotdb:iotdb-server