Published
Last updated
druid
7.5
CVSS V3
Status
Impact
ini4j 0.5.4 has no patch available upstream yet for CVE-2022-41404. The vulnerability affects the fetch() method in BasicProfile class causing potential DoS. Waiting for upstream to release a patched version.