Search CVE reports


Toggle filters

21 – 24 of 24 results


CVE-2016-9571

Medium priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-9606. Reason: This candidate is a duplicate of CVE-2016-9606. Reason: this ID was intended for one issue, but was associated with two issues. Notes: All...

1 affected package

resteasy

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
resteasy — — — — —
Show less packages

CVE-2016-6346

Low priority

Some fixes available 1 of 4

RESTEasy enables GZIPInterceptor, which allows remote attackers to cause a denial of service via unspecified vectors.

2 affected packages

resteasy, resteasy3.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
resteasy — Not affected Not affected Not affected Not in release
resteasy3.0 — Not affected Not affected Not affected Not affected
Show less packages

CVE-2016-6345

Medium priority

Some fixes available 1 of 12

RESTEasy allows remote authenticated users to obtain sensitive information by leveraging "insufficient use of random values" in async jobs.

2 affected packages

resteasy, resteasy3.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
resteasy — Not affected Not affected Not affected Not in release
resteasy3.0 — Not affected Not affected Not affected Not affected
Show less packages

CVE-2014-7839

Medium priority
Ignored

DocumentProvider in RESTEasy 2.3.7 and 3.0.9 does not configure the (1) external-general-entities or (2) external-parameter-entities features, which allows remote attackers to conduct XML external entity (XXE) attacks via...

1 affected package

resteasy

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
resteasy — — — — Not in release
Show less packages