SAS® Environment Manager contains third-party libraries with known vulnerabilities in SAS® 9.4M8 (TS1M8) and later


Severity: High

Description: SAS Environment Manager contains versions of Spring Security, Apache Tomcat, and related frameworks with the following known vulnerabilities: 

Potential Impact: Refer to the CVE records for details.