Loading
Generated remediation guidance and an executive summary. No account required.
Spring Batch versions 3.0.9, 4.0.1, 4.1.0, and older unsupported versions, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.
Use CWE-611, Pivotal Software vendor hub and Spring Batch product page to widen CVE-2019-3774 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-5411 for nearby disclosures in the same product family.