REDHAT-BUG-1224787: Low severity wildfly vulnerability
A flaw was reported in the Undertow module of WildFly that leaks the source code of a JSP page when a trailing slash (/) is added to the end of its URL.
This issue did not affect any versions of Red Hat JBoss Enterprise Application Platform because this flaw only affects the Undertow web module; JBoss EAP uses JBoss Web.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1224787?
The severity of REDHAT-BUG-1224787 is classified as a high-risk issue due to the potential exposure of sensitive JSP source code.
How do I fix REDHAT-BUG-1224787?
To fix REDHAT-BUG-1224787, it is recommended to update to the latest version of WildFly, which includes security patches addressing this vulnerability.
What systems are affected by REDHAT-BUG-1224787?
REDHAT-BUG-1224787 specifically affects the Undertow module of Red Hat WildFly when a trailing slash is added to the URL of a JSP page.
Is REDHAT-BUG-1224787 present in Red Hat JBoss Enterprise Application Platform?
No, REDHAT-BUG-1224787 does not affect any versions of Red Hat JBoss Enterprise Application Platform.
What type of vulnerability is REDHAT-BUG-1224787?
REDHAT-BUG-1224787 is a code exposure vulnerability that can lead to unauthorized access to JSP source files.