logo

Elastic's response to the Spring4Shell vulnerability (CVE-2022-22965)

ID: 31968ebb-51b8-5bdf-a7cb-c72dc3718340

STIX ID: report--31968ebb-51b8-5bdf-a7cb-c72dc3718340

Feed Name: Elastic Security Labs

Threat Score
65/100

Date Published: 2022-11-22

Date Updated: 2026-04-27

...
...

This advisory outlines CVE-2022-22965 (Spring4Shell), a remote code execution vulnerability in the Spring Framework that can be exploited when applications run Spring MVC/WebFlux on JDK 9+ and are deployed as WARs on Apache Tomcat; it describes the affected versions, impact, available detection guidance (including Elastic detection rules), and recommends patching Spring or Tomcat and using configuration mitigations such as disallowedFields.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.