Spring Boot Admin
Codecentric · 2 CVEs
CVE-2023-38286
HIGH
Thymeleaf through 3.1.1.RELEASE, as used in spring-boot-admin (aka Spring Boot Admin) through 3.1.1 and other products,…
Jul 14, 2023
CVE-2022-46166
CRITICAL
Spring Boot Admins integrated notifier support allows arbitrary code execution
Dec 9, 2022
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2023-38286 | Thymeleaf through 3.1.1.RELEASE, as used in spring-boot-admin (aka Spring Boot Admin) through 3.1.1 and other products, allows sandbox bypass via crafted HTML.… | HIGH | 0.97% | Jul 14, 2023 |
| CVE-2022-46166 | Spring Boot Admins integrated notifier support allows arbitrary code execution | CRITICAL | 1.48% | Dec 9, 2022 |
Showing 1 to 2 of 2 CVEs