Home / Companies / FusionAuth / Blog / Post Details
Content Deep Dive

Spring Framework CVE: How it affects FusionAuth (TLDR: It doesn't)

Blog post from FusionAuth

Post Details
Company
Date Published
Author
Dan Moore
Word Count
224
Company Posts That Month
6
Language
English
Hacker News Points
-
Post removed?
No
Summary

The recent announcement of CVE-2022-22965, a remote code execution vulnerability in Spring MVC or Spring WebFlux applications running on JDK 9+, has raised concerns among users. FusionAuth is not affected by this vulnerability as it uses a different MVC framework, Prime, and therefore cannot be compromised. However, security is important to FusionAuth, which takes various measures to ensure the security of its customers' applications, including a responsible disclosure program, regular penetration tests, and security disclosures in release notes.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.