Description
ff4j 1.8.1 is vulnerable to Remote Code Execution (RCE).
Remediation
References
https://github.com/ff4j/ff4j/issues/624
Related Vulnerabilities
CVE-2020-14967 Vulnerability in maven package org.webjars.bowergithub.kjur:jsrsasign
CVE-2022-25901 Vulnerability in maven package org.webjars.npm:cookiejar
CVE-2023-0842 Vulnerability in maven package org.webjars.npm:xml2js
CVE-2020-2295 Vulnerability in maven package org.jkva.maven-plugins:cascading-release-maven-plugin
CVE-2020-36282 Vulnerability in maven package com.rabbitmq.jms:rabbitmq-jms