Closed
Description
CVE ID(s)
There's no CVE for this.
Report
I created a query to detect open (unauthenticated) Spring Boot actuators that can lead to sensitive information disclosure or even RCE.
The details are present in PR: github/codeql#2901
- Are you planning to discuss this vulnerability submission publicly? (Blog Post, social networks, etc). We would love to have you spread the word about the good work you are doing