原始 OSV JSON{
"id": "GHSA-338v-3958-8v8r",
"aliases": [
"CVE-2014-8122"
],
"details": "Race condition in JBoss Weld before 2.2.8 and 3.x before 3.0.0 Alpha3 allows remote attackers to obtain information from a previous conversation via vectors related to a stale thread state.",
"summary": "Information disclosure in JBoss Weld",
"affected": [
{
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"fixed": "2.2.8"
}
]
}
],
"package": {
"name": "org.jboss.weld:weld-core-bom",
"ecosystem": "Maven"
}
}
],
"modified": "2021-08-30T13:39:36Z",
"severity": [],
"published": "2020-06-10T20:54:15Z",
"references": [
{
"url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8122",
"type": "ADVISORY"
},
{
"url": "https://github.com/weld/core/commit/29fd1107fd30579ad9bb23fae4dc3ba464205745",
"type": "WEB"
},
{
"url": "https://github.com/weld/core/commit/6808b11cd6d97c71a2eed754ed4f955acd789086",
"type": "WEB"
},
{
"url": "https://github.com/weld/core/commit/8e413202fa1af08c09c580f444e4fd16874f9c65",
"type": "WEB"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/100892",
"type": "WEB"
},
{
"url": "https://github.com/victims/victims-cve-db/blob/master/database/java/2014/8122.yaml",
"type": "WEB"
},
{
"url": "https://github.com/weld/core",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0215.html",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0216.html",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0217.html",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0218.html",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0675.html",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0773.html",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0850.html",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0851.html",
"type": "WEB"
},
{
"url": "http://rhn.redhat.com/errata/RHSA-2015-0920.html",
"type": "WEB"
},
{
"url": "http://www.securityfocus.com/bid/74252",
"type": "WEB"
},
{
"url": "http://www.securitytracker.com/id/1031741",
"type": "WEB"
}
],
"schema_version": "1.4.0",
"database_specific": {
"cwe_ids": [
"CWE-362"
],
"severity": "MODERATE",
"github_reviewed": true,
"nvd_published_at": null,
"github_reviewed_at": "2020-06-10T20:53:46Z"
}
}