Lucene search

K

Cron-utils Project Security Vulnerabilities

cve
cve

CVE-2020-26238

Cron-utils is a Java library to parse, validate, migrate crons as well as get human readable descriptions for them. In cron-utils before version 9.1.3, a template Injection vulnerability is present. This enables attackers to inject arbitrary Java EL expressions, leading to unauthenticated Remote...

8.1CVSS

8.3AI Score

0.199EPSS

2020-11-25 12:15 AM
83
2
cve
cve

CVE-2021-41269

cron-utils is a Java library to define, parse, validate, migrate crons as well as get human readable descriptions for them. In affected versions A template Injection was identified in cron-utils enabling attackers to inject arbitrary Java EL expressions, leading to unauthenticated Remote Code...

10CVSS

9.7AI Score

0.042EPSS

2021-11-15 09:15 PM
82