codeql/java/old-change-notes/2021-07-01-url-classloader-...

173 B

lgtm,codescanning

  • Added support for two new APIs susceptible to server-side request forgery (SSRF): using a URLClassLoader, and using Spring Web Reactive's WebClient.