Risk Scores
CVSS v3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P
Affected Products
| Vendor | Product | Versions |
|---|---|---|
Timeline
- Jan 29, 2023 CVE Updated
- Apr 2, 2023 CVE Published
References
- https://security.snyk.io/vuln/SNYK-JAVA-NETSOURCEFORGEHTMLUNIT-3252500 advisory
- https://learn.snyk.io/lesson/malicious-code-injection/ technical
- http://htmlunit.sourceforge.net technical
- https://mvnrepository.com/artifact/org.htmlunit/htmlunit technical
- https://github.com/HtmlUnit/htmlunit/commit/641325bbc84702dc9800ec7037aec061ce21956b patch
- https://siebene.github.io/2022/12/30/HtmlUnit-RCE/ technical