/
DirectorySecurity AdvisoriesPricing
Sign In
Security Advisories

CVE-2024-38819

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-38819

Severity

Unknown

Description

Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An attacker can craft malicious HTTP requests and obtain any file on the file system that is also accessible to the process in which the Spring application is running.

References

  • https://images.chainguard.dev/security/CGA-r7r9-5p67-67gx

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs