
spring data mongodb remote code execution | cve-2022-22980 poc
spring data mongodb remote code execution | cve-2022-22980 poc
A Spring Data MongoDB application is vulnerable to #SpEL #injection when using @Query or @Aggregation-annotated query methods with SpEL expressions that contain query parameter placeholders for value binding if the input is not sanitized.