CVE-2020-5412
Externally Controlled Reference to a Resource in Another Sphere and Confused Deputy in Spring Cloud Netflix
CVEs:CVE-2020-5412
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 2 are already weaponised in the wild — see the Exploited section.
The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.
Externally Controlled Reference to a Resource in Another Sphere and Confused Deputy in Spring Cloud Netflix
CVEs:CVE-2020-5412
Externally Controlled Reference to a Resource in Another Sphere and Confused Deputy in Spring Cloud Netflix
CVEs:GHSA-qgcg-p3v2-9h4p
Improper Input Validation in Spring Framework
CVEs:GHSA-rv39-3qh7-9v7w
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.