Flaw found in RESTEasy

Security experts warn of a flaw in RESTEasy. An attacker may exploit it to steal information. The flaw is due to an error when processing XML data. It is possible to read file content using crafted XML code. The vulnerability was found in versions prior to 2.3.1. Users should upgrade to version 2.3.1.


Source: Secunia
01.02.2012