Researchers Disclose Critical RCE Vulnerability Affecting Quarkus Java Framework

Discussion in 'News Aggregator' started by Ravie Lakshmanan, 1 Dec 2022.

  1. A critical security vulnerability has been disclosed in the Quarkus Java framework that could be potentially exploited to achieve remote code execution on affected systems. Tracked as CVE-2022-4116 (CVSS score: 9.8), the shortcoming could be trivially abused by a malicious actor without any privileges. "The vulnerability is found in the Dev UI Config Editor, which is vulnerable to drive-by

    Continue reading...
     

Share This Page

Loading...