CVE-2018-19530

CVE-2018-19530

HTTL (aka Hyper-Text Template Language) through 1.0.11 allows remote command execution because the decodeXml function uses XStream unsafely when configured with an xml.codec=httl.spi.codecs.XstreamCodec setting.

Source: CVE-2018-19530

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다