Description
easy-rules-mvel v4.1.0 was discovered to contain a remote code execution (RCE) vulnerability via the component MVELRule.
Remediation
References
https://github.com/j-easy/easy-rules/issues/419
Related Vulnerabilities
CVE-2021-34082 Vulnerability in npm package proctree
CVE-2020-5258 Vulnerability in maven package org.webjars.bowergithub.dojo:dojo
CVE-2018-1000615 Vulnerability in maven package org.onosproject:onos-ovsdb
CVE-2019-6283 Vulnerability in npm package node-sass
CVE-2020-36649 Vulnerability in maven package org.webjars.npm:papaparse