Applications using affected versions of Ehcache 3.x can experience degraded cache-write performance if the application using Ehcache utilizes keys sourced from (malicious) external parties in an unfiltered/unsalted way.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7247977 |
Configurations
No configuration.
History
15 Oct 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-15 16:15
Updated : 2025-10-16 15:28
NVD link : CVE-2025-2529
Mitre link : CVE-2025-2529
CVE.ORG link : CVE-2025-2529
JSON object : View
Products Affected
No product.
CWE
CWE-228
Improper Handling of Syntactically Invalid Structure
