CVE-2014-3558
CVE-2014-3558
ReflectionHelper (org.hibernate.validator.util.ReflectionHelper) in Hibernate Validator 4.1.0 before 4.2.1, 4.3.x before 4.3.2, and 5.x before 5.1.2 allows attackers to bypass Java Security Manager (JSM) restrictions and execute restricted reflection calls via a crafted application.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://rhn.redhat.com/errata/RHSA-2014-1285.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1286.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1287.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1288.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0125.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0720.htmlhttps://github.com/victims/victims-cve-db/blob/master/database/java/2014/3558.yamlhttps://hibernate.atlassian.net/browse/HV-912