REDHAT-BUG-2245700: High severity red hat quarkus resteasy vulnerability
Quarkus does not properly sanitize artifacts created from its use of the Gradle plugin, allowing certain build system information to remain. An attacker could use this flaw to access potentially sensitive information from the build system from within the application.
This affects versions 3.0.0.CR1 and later.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2245700?
The severity of REDHAT-BUG-2245700 is classified as a potential information disclosure vulnerability.
How do I fix REDHAT-BUG-2245700?
To fix REDHAT-BUG-2245700, you should update to a fixed version of Red Hat Quarkus that addresses this vulnerability.
What versions of Red Hat Quarkus are affected by REDHAT-BUG-2245700?
Versions from 3.0.0.CR1 onwards are affected by REDHAT-BUG-2245700.
What kind of information is exposed in REDHAT-BUG-2245700?
REDHAT-BUG-2245700 may expose sensitive build system information used by the application.
Which plugin is associated with REDHAT-BUG-2245700?
The vulnerability REDHAT-BUG-2245700 is associated with the Gradle plugin used in Quarkus.