CVE-2019-12416
19.03.2020, 15:15
we got reports for 2 injection attacks against the DeltaSpike windowhandler.js. This is only active if a developer selected the ClientSideWindowStrategy which is not the default.
Vendor | Product | Version |
---|---|---|
apache | deltaspike | 𝑥 ≤ 1.9.2 |
𝑥
= Vulnerable software versions
References