Vulnerabilities > Vmware > Spring Cloud Netflix > 2.2.4

DATE CVE VULNERABILITY TITLE RISK
2021-11-19 CVE-2021-22053 Code Injection vulnerability in VMWare Spring Cloud Netflix
Applications using both `spring-cloud-netflix-hystrix-dashboard` and `spring-boot-starter-thymeleaf` expose a way to execute code submitted within the request URI path during the resolution of view templates.
network
low complexity
vmware CWE-94
6.5