news.mlab.sh
1 result
vulnerability

Java Spring Boot "heapdump" scans, (Mon, Jul 27th)

A vulnerability in Spring Boot applications exposes a heapdump endpoint that, by default, contains sensitive data like API keys and database passwords. Attackers are leveraging a weak default username/password combination to gain access to these dumps, highlighting a critical security oversight in Spring Boot deploymen…

SANS Internet Storm Center · Jul 27, 2026 High