mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-28 18:48:49 +00:00
1.2 KiB
1.2 KiB
CVE-2024-48962
Description
Improper Control of Generation of Code ('Code Injection'), Cross-Site Request Forgery (CSRF), : Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Apache OFBiz.This issue affects Apache OFBiz: before 18.12.17.Users are recommended to upgrade to version 18.12.17, which fixes the issue.
POC
Reference
No PoCs from references.