Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31056
HistoryJun 25, 2021 - 1:14 a.m.

Remote Code Execution (RCE)

2021-06-2501:14:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.001 Low

EPSS

Percentile

23.5%

flow-server is vulnerable to remote code execution. The vulnerability exists due to a the system not escaping the " character when passing request via DevModeHandlerImpl.

CPENameOperatorVersion
flow serverle6.0.9

0.001 Low

EPSS

Percentile

23.5%