Vulnerability in the Spring Framework (CVE-2022-22965, also referred to as "SpringShell", or "Spring4Shell")

Siemens is aware of the security vulnerability in the Spring Framework (CVE-2022-22965), also referred to as "SpringShell", or "Spring4Shell".

For Siemens products, a security advisory (SSA-254054) was issued on 2022-04-19 and will be updated in the following days as more information becomes available.