Loading
Applications using Spring Cloud Gateway are vulnerable to specifically crafted requests that could make an extra request on downstream services. Users of affected versions should apply the following mitigation: 3.0.x users should upgrade to 3.0.5+, 2.2.x users should upgrade to 2.2.10.RELEASE or newer.
Use CWE-863, Vmware vendor hub and Spring Cloud Gateway product page to widen CVE-2021-22051 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-22947 and CVE-2022-22946 for nearby disclosures in the same product family.