Files
CVEs-PoC/2025/CVE-2025-1247.md
T
2025-09-29 21:09:30 +02:00

1.1 KiB

CVE-2025-1247

Description

A flaw was found in Quarkus REST that allows request parameters to leak between concurrent requests if endpoints use field injection without a CDI scope. This vulnerability allows attackers to manipulate request data, impersonate users, or access sensitive information.

POC

Reference

No PoCs from references.

Github