First published: Mon Apr 03 2023(Updated: )
Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage.
Credit: report@snyk.io report@snyk.io report@snyk.io
Affected Software | Affected Version | How to fix |
---|---|---|
Htmlunit Project Htmlunit | <3.0.0 | |
Htmlunit Htmlunit | <3.0.0 | |
maven/net.sourceforge.htmlunit:htmlunit | <3.0.0 | 3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-26119 is critical with a severity value of 9.8.
The vulnerability in CVE-2023-26119 is Remote Code Execution (RCE) via XSTL.
Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are affected by CVE-2023-26119.
To fix CVE-2023-26119, update the package net.sourceforge.htmlunit:htmlunit to version 3.0.0 or above.
You can find more information about CVE-2023-26119 at the following references: [link1], [link2], [link3].