In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, application with a STOMP over WebSocket endpoint is vulnerable to a denial of service attack by an authenticated user.
{ "urgency": "unimportant" }
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2022-22971.json"