Loading
Generated remediation guidance and an executive summary. No account required.
This affects Spring Data JPA in versions up to and including 2.1.6, 2.0.14 and 1.11.20. ExampleMatcher using ExampleMatcher.StringMatcher.STARTING, ExampleMatcher.StringMatcher.ENDING or ExampleMatcher.StringMatcher.CONTAINING could return more results than anticipated when a maliciously crafted example value is supplied.
Use CWE-155, Pivotal Software vendor hub and Spring Data Java Persistance Api product page to widen CVE-2019-3802 into its surrounding weakness, vendor, and product context.