Get ahead
VMware offers training and certification to turbo-charge your progress.
Learn moreSpring Batch versions 3.0.9, 4.0.1, 4.1.0, and older unsupported versions, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.
Spring Batch:
| Fix version | Availability |
|---|---|
| 4.1.1 | OSS |
| 4.0.2 | OSS |
| 3.0.10 | OSS |
To report a security vulnerability for a project within the Spring portfolio, see the Security Policy