Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40470
HistoryMay 11, 2023 - 3:41 a.m.

Server-Side Template Injection(SSTI)

2023-05-1103:41:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13
server-side template injection
com.ibeetl:beetl
remote attacker
render function
crafted payload
software

0.003 Low

EPSS

Percentile

69.4%

com.ibeetl:beetl is vulnerable to Server-Side Template Injection(SSTI). A remote attacker is able to cause server-side template injection due to insufficient checks in render function via a crafted payload.

CPENameOperatorVersion
beetlle3.15.4.RELEASE
beetlle3.15.4.RELEASE

0.003 Low

EPSS

Percentile

69.4%

Related for VERACODE:40470