Executive brief
Eclipse GlassFish is vulnerable to Server Side Request Forgery attacks through specific endpoints
Affected products
- Maven org.glassfish.main.admingui:console-common
Junglewise Threat Intelligence
CVE-2024-9408 · Severity: medium · CVSS 4 · Published 2025-07-16
Technologies: org.glassfish.main.admingui:console-common (Maven). Vendors: Maven.
Eclipse GlassFish is vulnerable to Server Side Request Forgery attacks through specific endpoints