SA-2023-090 - Spring Framework STOMP (CVE-2018-1270)
Summary Spring Framework allows applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module. A malicious user (or attacker) can craf...
