CVE-2024-38827

Updated on 02 Dec 2024

Severity

4.8 Medium severity

Details

CVSS score
4.8
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N

Overview

About vulnerability

The usage of String.toLowerCase() and String.toUpperCase() has some Locale dependent exceptions that could potentially result in authorization rules not working properly.

Details

Affected product:
Spring , cxf
Affected packages:
cxf-services-xkms-service @ 3.5.9 (+684 more)
The usage of String.toLowerCase() and String.toUpperCase() has some Locale dependent exceptions that could potentially result in authorization rules not working properly.

Fixes