Server-Side Template Injection (SSTI) vulnerability in jFinal v.4.9.08 allows a remote attacker to execute arbitrary code via the template function.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/jfinal/jfinal/issues/187 |
History
Thu, 05 Dec 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-94 | |
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-06-26T00:00:00
Updated: 2024-12-05T15:32:17.532Z
Reserved: 2021-04-23T00:00:00
Link: CVE-2021-31635
Vulnrichment
Updated: 2024-08-03T23:03:33.669Z
NVD
Status : Modified
Published: 2023-06-26T19:15:09.667
Modified: 2024-12-05T16:15:19.800
Link: CVE-2021-31635
Redhat
No data.