Description
easy-rules-mvel v4.1.0 was discovered to contain a remote code execution (RCE) vulnerability via the component MVELRule.
Remediation
References
https://github.com/j-easy/easy-rules/issues/419
Related Vulnerabilities
CVE-2020-35491 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2011-4969 Vulnerability in maven package org.wicketstuff:jquery
CVE-2019-14517 Vulnerability in maven package org.webjars.bower:editor.md
CVE-2023-49210 Vulnerability in npm package openssl
CVE-2018-10469 Vulnerability in maven package org.b3log:symphony