CVE-2020-25638 | hibernate-core up to 5.4.23.Final JPA Criteria API sql injection (Bug 1881353 / Nessus ID 240506)
A vulnerability has been found in hibernate-core up to 5.4.23.Final and classified as critical. This vulnerability affects unknown code of the component JPA Criteria API. The manipulation leads to sql injection.
This vulnerability was named CVE-2020-25638. The attack can be initiated remotely. There is no exploit available.