CVE Published: 28/10/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: vmware |
Vendor: n/a |
Product: Spring Cloud OpenFeign Status : PUBLISHED
CVE-2021-22044 Description
In Spring Cloud OpenFeign 3.0.0 to 3.0.4, 2.2.0.RELEASE to 2.2.9.RELEASE, and older unsupported versions, applications using type-level `@RequestMapping`annotations over Feign client interfaces, can be involuntarily exposing endpoints corresponding to `@RequestMapping`-annotated interface methods.