CNNVD-202507-2177 Information

CNNVD ID

CNNVD-202507-2177

CVE-2024-9408

  • CNNVD Published: 2025-07-16

Description (Chinese)

Eclipse GlassFish是Eclipse基金会的一个开放源码应用服务器。 Eclipse GlassFish 6.2.5及之后版本存在代码问题漏洞,该漏洞源于特定端点存在服务端请求伪造攻击风险。

Description (English)

Eclipse GlassFish is an open source application server of the Eclipse Foundation. Eclipse GlassFish 6.2.5 and later versions have a code gap, which stems from the existence of a service-end request for a false attack risk.

Hazard Level

Low

Vulnerability Type

代码问题

Affected Vendor

Eclipse

Published

2025-07-16

Last Modified

2026-02-24

References

https://gitlab.eclipse.org/security/cve-assignement/-/issues/38

Patch

https://glassfish.org/download.html

Share on: