CVE-2024-37759 Information

Description

DataGear v5.0.0 and earlier was discovered to contain a SpEL (Spring Expression Language) expression injection vulnerability via the Data Viewing interface.

Reference

https://github.com/datageartech/datagear/issues/32 https://github.com/crumbledwall/CVE-2024-37759_PoC

Share on: