Skip to content

Conversation

2tunnels
Copy link
Contributor

I think Msf::Exploit::Remote::Java::HTTP::ClassLoader module had on_request_uri method, that was later renamed to java_class_loader_on_request_uri.

Verified the fix as well 👍

I think `Msf::Exploit::Remote::Java::HTTP::ClassLoader` module had `on_request_uri` method, that was later renamed to `java_class_loader_on_request_uri`.
@smcintyre-r7 smcintyre-r7 self-assigned this Aug 25, 2025
@smcintyre-r7 smcintyre-r7 moved this from Todo to In Progress in Metasploit Kanban Aug 25, 2025
@smcintyre-r7
Copy link
Contributor

Thanks I was able to reproduce the original issue and validate that this fixes it.

@smcintyre-r7 smcintyre-r7 merged commit 51a2c96 into rapid7:master Aug 25, 2025
17 checks passed
@github-project-automation github-project-automation bot moved this from In Progress to Done in Metasploit Kanban Aug 25, 2025
@smcintyre-r7
Copy link
Contributor

Release Notes

This fixes an issue with the exploit for CVE-2023-43654 that was preventing the exploit requests from being served.

@2tunnels 2tunnels deleted the patch-1 branch August 27, 2025 09:12
@adfoster-r7 adfoster-r7 added the rn-fix release notes fix label Aug 28, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug module rn-fix release notes fix
Projects
Status: Done
Development

Successfully merging this pull request may close these issues.

3 participants