Spring4Shell

Understanding and Mitigating the Spring4Shell Vulnerability Prevent Spring4Shell Vulnerabilities
Table of Contents

What is Spring4Shell?

Zero-day, remote code execution (RCE) vulnerability in the Spring Framework was Disclosed on Tuesday, March 29, 2022. Impacted applications include those using Spring Framework ( with a spring-webmvc or spring-webflux dependency), running on JDK 9 or higher andApache Tomcat.

Learn more about Contrast Security