CVE-2023-46131
21.12.2023, 00:15
Grails is a framework used to build web applications with the Groovy programming language. A specially crafted web request can lead to a JVM crash or denial of service. Any Grails framework application using Grails data binding is vulnerable. This issue has been patched in version 3.3.17, 4.1.3, 5.3.4, 6.1.0.Enginsight
Vendor | Product | Version |
---|---|---|
grails | grails | 𝑥 < 3.3.17 |
grails | grails | 4.0.0 ≤ 𝑥 < 4.1.3 |
grails | grails | 5.0.0 ≤ 𝑥 < 5.3.4 |
grails | grails | 6.0.0 ≤ 𝑥 < 6.1.0 |
𝑥
= Vulnerable software versions
References