Description
webmagic-extension v0.9.0 and below was discovered to contain a code injection vulnerability via the component us.codecraft.webmagic.downloader.PhantomJSDownloader.
Remediation
References
https://github.com/code4craft/webmagic/issues/1122
Related Vulnerabilities
CVE-2018-19586 Vulnerability in maven package org.silverpeas.core:silverpeas-core-web
CVE-2021-23702 Vulnerability in npm package object-extend
CVE-2022-41915 Vulnerability in maven package io.netty:netty-codec
CVE-2019-6286 Vulnerability in npm package node-sass
CVE-2020-26870 Vulnerability in maven package org.webjars.npm:dompurify