Search CVE reports


Toggle filters

21 – 24 of 24 results


CVE-2016-9571

Medium priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-9606. Reason: This candidate is a duplicate of CVE-2016-9606. Reason: this ID was intended for one issue, but was associated with two issues. Notes: All...

1 affected package

resteasy

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
resteasy
Show less packages

CVE-2016-6346

Low priority

Some fixes available 1 of 4

RESTEasy enables GZIPInterceptor, which allows remote attackers to cause a denial of service via unspecified vectors.

2 affected packages

resteasy, resteasy3.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
resteasy Not affected Not affected Not affected Not in release
resteasy3.0 Not affected Not affected Not affected Not affected
Show less packages

CVE-2016-6345

Medium priority

Some fixes available 1 of 12

RESTEasy allows remote authenticated users to obtain sensitive information by leveraging "insufficient use of random values" in async jobs.

2 affected packages

resteasy, resteasy3.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
resteasy Not affected Not affected Not affected Not in release
resteasy3.0 Not affected Not affected Not affected Not affected
Show less packages

CVE-2014-7839

Medium priority
Ignored

DocumentProvider in RESTEasy 2.3.7 and 3.0.9 does not configure the (1) external-general-entities or (2) external-parameter-entities features, which allows remote attackers to conduct XML external entity (XXE) attacks via...

1 affected package

resteasy

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
resteasy Not in release
Show less packages