KB Article #182085

Impact of CVE-2022-22965 (Spring Framework) vulnerability in TSIM, BOM and WebEDI

Problem

Recently announced CVE-2022-22965 (Spring Framework) vulnerability can lead to remote code execution on the targeted system.
Any components/applications using Spring Framework versions before 5.2.20, 5.3.18 AND JDK version 9 or higher are considered potentially vulnerable


Resolution

Latest versions of TSIM, BOM and WebEDI are running Java 8, and therefore are not exposed to this vulnerability