CVE-2020-11000 to CVE-2020-11999
163 CVEs with public proof-of-concept exploits.
- CVE-2020-110191 PoCOut of bound read in update_recv in FreeRDP
- CVE-2020-110211 PoCHTTP request which redirect to another hostname do not strip authorization header in Actions Http-Client
- CVE-2020-110229 PoCsjQuery has a potential XSS vulnerability
- CVE-2020-110239 PoCsKEVPotential XSS vulnerability in jQuery
- CVE-2020-110251 PoCAuthenticated cross-site scripting (XSS) in WordPress Customizer
- CVE-2020-110261 PoCSpecially crafted filenames in WordPress leading to XSS
- CVE-2020-110272 PoCsPassword reset links invalidation issue in WordPress
- CVE-2020-110281 PoCUnauthenticated disclosure of certain private posts in WordPress
- CVE-2020-110291 PoCCross-site scripting in stats method (object cache) in WordPress
- CVE-2020-110301 PoCCross-site scripting (XSS) in Search block in WordPress
- CVE-2020-110341 PoCbypass of manageRedirect in GLPI
- CVE-2020-110591 PoCExposure of Sensitive Information to an Unauthorized Actor in AEgir
- CVE-2020-110604 PoCsRemote Code Execution in GLPI
- CVE-2020-110791 PoCcommand injection fix in node-dns-sync
- CVE-2020-110832 PoCsStored XSS in October
- CVE-2020-110932 PoCsAuthorization bypass in Hyperledger Indy
- CVE-2020-110971 PoCOOB read in ntlm_av_pair_get in FreeRDP
- CVE-2020-111075 PoCsAn issue was discovered in XAMPP before 7.2.29, 7.3.x before 7.3.16 , and 7.4.x before 7.4.4 on Windows. An unprivileged user can change a…
- CVE-2020-111089 PoCsThe Gravity updater in Pi-hole through 4.4 allows an authenticated adversary to upload arbitrary files. This can be abused for Remote Code…
- CVE-2020-111102 PoCsGrafana through 6.7.1 allows stored XSS due to insufficient input protection in the originalUrl field, which allows an attacker to inject…
- CVE-2020-111131 PoCFasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to…
- CVE-2020-111791 PoCArbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon…
- CVE-2020-112011 PoCArbitrary access to DSP memory due to improper check in loaded library for data received from CPU side' in Snapdragon Auto, Snapdragon…
- CVE-2020-112021 PoCBuffer overflow/underflow occurs when typecasting the buffer passed by CPU internally in the library which is not aligned with the actual…
- CVE-2020-112061 PoCPossible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in Snapdragon Auto,…
- CVE-2020-112071 PoCBuffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snapdragon Compute,…
- CVE-2020-112081 PoCOut of Bound issue in DSP services while processing received arguments due to improper validation of length received as an argument' in…
- CVE-2020-112091 PoCImproper authorization in DSP process could allow unauthorized users to downgrade the library versions in SD820, SD821, SD820, QCS603,…
- CVE-2020-114361 PoCLibreHealth EMR v2.0.0 is vulnerable to XSS that results in the ability to force arbitrary actions on behalf of other users including…
- CVE-2020-114371 PoCLibreHealth EMR v2.0.0 is affected by SQL injection allowing low-privilege authenticated users to enumerate the database.
- CVE-2020-114381 PoCLibreHealth EMR v2.0.0 is affected by systemic CSRF.
- CVE-2020-114391 PoCLibreHealth EMR v2.0.0 is affected by a Local File Inclusion issue allowing arbitrary PHP to be included and executed within the EMR…
- CVE-2020-114412 PoCsphpMyAdmin 5.0.2 allows CRLF injection, as demonstrated by %0D%0Astring%0D%0A inputs to login form fields causing CRLF sequences to be…
- CVE-2020-114442 PoCsSonatype Nexus Repository Manager 3.x up to and including 3.21.2 has Incorrect Access Control.
- CVE-2020-114491 PoCAn issue was discovered on Technicolor TC7337 8.89.17 devices. An attacker can discover admin credentials in the backup file, aka…
- CVE-2020-114502 PoCsMicrostrategy Web 10.4 exposes the JVM configuration, CPU architecture, installation folder, and other information through the URL…
- CVE-2020-114511 PoCThe Upload Visualization plugin in the Microstrategy Web 10.4 admin panel allows an administrator to upload a ZIP archive containing files…
- CVE-2020-114521 PoCMicrostrategy Web 10.4 includes functionality to allow users to import files or data from external resources such as URLs or databases. By…
- CVE-2020-114531 PoCMicrostrategy Web 10.4 is vulnerable to Server-Side Request Forgery in the Test Web Service functionality exposed through the path…
- CVE-2020-114541 PoCMicrostrategy Web 10.4 is vulnerable to Stored XSS in the HTML Container and Insert Text features in the window, allowing for the creation…
- CVE-2020-114554 PoCsLimeSurvey before 4.1.12+200324 contains a path traversal vulnerability in application/controllers/admin/LimeSurveyFileManager.php.
- CVE-2020-114562 PoCsLimeSurvey before 4.1.12+200324 has stored XSS in application/views/admin/surveysgroups/surveySettings.php and…
- CVE-2020-114571 PoCpfSense before 2.4.5 has stored XSS in system_usermanager_addprivs.php in the WebGUI via the descr parameter (aka full name) of a user.
- CVE-2020-114581 PoCapp/Model/feed.php in MISP before 2.4.124 allows administrators to choose arbitrary files that should be ingested by MISP. This does not…
- CVE-2020-114631 PoCAn issue was discovered in Deskpro before 2019.8.0. The /api/email_accounts endpoint failed to properly validate a user's privilege,…
- CVE-2020-114641 PoCAn issue was discovered in Deskpro before 2019.8.0. The /api/people endpoint failed to properly validate a user's privilege, allowing an…
- CVE-2020-114651 PoCAn issue was discovered in Deskpro before 2019.8.0. The /api/apps/* endpoints failed to properly validate a user's privilege, allowing an…
- CVE-2020-114661 PoCAn issue was discovered in Deskpro before 2019.8.0. The /api/tickets endpoint failed to properly validate a user's privilege, allowing an…
- CVE-2020-114671 PoCAn issue was discovered in Deskpro before 2019.8.0. This product enables administrators to modify the helpdesk interface by editing…
- CVE-2020-114741 PoCNCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant.
- CVE-2020-114761 PoCConcrete5 before 8.5.3 allows Unrestricted Upload of File with Dangerous Type such as a .phar file.
- CVE-2020-114901 PoCManage::Certificates in Zen Load Balancer 3.10.1 allows remote authenticated admins to execute arbitrary OS commands via shell…
- CVE-2020-114913 PoCsMonitoring::Logs in Zen Load Balancer 3.10.1 allows remote authenticated admins to conduct absolute path traversal attacks, as…
- CVE-2020-114922 PoCsAn issue was discovered in Docker Desktop through 2.2.0.5 on Windows. If a local attacker sets up their own named pipe prior to starting…
- CVE-2020-114931 PoCIn Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information about an…
- CVE-2020-114971 PoCAn issue was discovered in the NAB Transact extension 2.1.0 for the WooCommerce plugin for WordPress. An online payment system bypass…
- CVE-2020-115111 PoCThe LearnPress plugin before 3.2.6.9 for WordPress allows remote attackers to escalate the privileges of any user to LP Instructor via the…
- CVE-2020-115141 PoCThe Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to update arbitrary WordPress metadata,…
- CVE-2020-115151 PoCThe Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to create new URIs (that redirect to an…
- CVE-2020-115281 PoCbit2spr 1992-06-07 has a stack-based buffer overflow (129-byte write) in conv_bitmap in bit2spr.c via a long line in a bitmap file.
- CVE-2020-115291 PoCCommon/Grav.php in Grav before 1.7 has an Open Redirect. This is partially fixed in 1.6.23 and still present in 1.6.x.
- CVE-2020-115305 PoCsA blind SQL injection vulnerability is present in Chop Slider 3, a WordPress plugin. The vulnerability is introduced in the id GET…
- CVE-2020-115312 PoCsThe DataEngine Xnode Server application in Zoho ManageEngine DataSecurity Plus prior to 6.0.1 does not validate the database schema name…
- CVE-2020-115323 PoCsZoho ManageEngine DataSecurity Plus prior to 6.0.1 uses default admin credentials to communicate with a DataEngine Xnode server. This…
- CVE-2020-115361 PoCAn issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit the unzip function…
- CVE-2020-115391 PoCAn issue was discovered on Tata Sonata Smart SF Rush 1.12 devices. It has been identified that the smart band has no pairing (mode 0…
- CVE-2020-115464 PoCsSuperWebMailer 7.21.0.01526 is susceptible to a remote code execution vulnerability in the Language parameter of mailingupgrade.php. An…
- CVE-2020-115471 PoCPRTG Network Monitor before 20.1.57.1745 allows remote unauthenticated attackers to obtain information about probes running or the server…
- CVE-2020-115481 PoCThe Search Meter plugin through 2.13.2 for WordPress allows user input introduced in the search bar to be any formula. The attacker could…
- CVE-2020-115492 PoCsAn issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y)…
- CVE-2020-115502 PoCsAn issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y)…
- CVE-2020-115512 PoCsAn issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y)…
- CVE-2020-115524 PoCsAn elevation of privilege vulnerability exists in ManageEngine ADSelfService Plus before build 6003 because it does not properly enforce…
- CVE-2020-115531 PoCAn issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. There is pervasive CSRF.
- CVE-2020-115541 PoCAn issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. It allows remote attackers to obtain sensitive information…
- CVE-2020-115551 PoCAn issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. It allows remote attackers to obtain sensitive credential…
- CVE-2020-115561 PoCAn issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. There are multiple persistent (stored) and reflected XSS…
- CVE-2020-115571 PoCAn issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. It includes the username and password values in cleartext…
- CVE-2020-115581 PoCAn issue was discovered in libgpac.a in GPAC 0.8.0, as demonstrated by MP4Box. audio_sample_entry_Read in isomedia/box_code_base.c does…
- CVE-2020-115602 PoCsNCH Express Invoice 7.25 allows local users to discover the cleartext password by reading the configuration file.
- CVE-2020-115612 PoCsIn NCH Express Invoice 7.25, an authenticated low-privilege user can enter a crafted URL to access higher-privileged functionalities such…
- CVE-2020-115792 PoCsAn issue was discovered in Chadha PHPKB 9.0 Enterprise Edition. installer/test-connection.php (part of the installation process) allows a…
- CVE-2020-115811 PoCAn issue was discovered in Pulse Secure Pulse Connect Secure (PCS) through 2020-04-06. The applet in tncc.jar, executed on macOS, Linux,…
- CVE-2020-116101 PoCAn issue was discovered in xdLocalStorage through 2.0.5. The postData() function in xdLocalStoragePostMessageApi.js specifies the wildcard…
- CVE-2020-116111 PoCAn issue was discovered in xdLocalStorage through 2.0.5. The buildMessage() function in xdLocalStorage.js specifies the wildcard (*) as…
- CVE-2020-116501 PoCAn issue was discovered in iXsystems FreeNAS (and TrueNAS) 11.2 before 11.2-u8 and 11.3 before 11.3-U1. It allows a denial of service. The…
- CVE-2020-1165120 PoCsKEVAn issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class does not…
- CVE-2020-1165214 PoCsKEVAn issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class allows access…
- CVE-2020-116731 PoCAn issue was discovered in the Responsive Poll through 1.3.4 for Wordpress. It allows an unauthenticated user to manipulate polls, e.g.,…
- CVE-2020-116791 PoCCastel NextGen DVR v1.0.0 is vulnerable to privilege escalation through the Adminstrator/Users/Edit/:UserId functionality.…
- CVE-2020-116986 PoCsAn issue was discovered in Titan SpamTitan 7.07. Improper input sanitization of the parameter community on the page snmp-x.php would allow…
- CVE-2020-116994 PoCsAn issue was discovered in Titan SpamTitan 7.07. Improper validation of the parameter fname on the page certs-x.php would allow an…
- CVE-2020-117004 PoCsAn issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter fname, used on the page certs-x.php, would allow…
- CVE-2020-117092 PoCscpp-httplib through 0.5.8 does not filter \r\n in parameters passed into the set_redirect and set_header functions, which creates…
- CVE-2020-117104 PoCsAn issue was discovered in docker-kong (for Kong) through 2.0.3. The admin API port may be accessible on interfaces other than 127.0.0.1.…
- CVE-2020-117121 PoCOpen Upload through 0.4.3 allows XSS via index.php?action=u and the filename field.
- CVE-2020-117131 PoCwolfSSL 4.3.0 has mulmod code in wc_ecc_mulmod_ex in ecc.c that does not properly resist timing side-channel attacks.
- CVE-2020-117141 PoCeten PSG-6528VM 1.1 devices allow XSS via System Contact or System Location.
- CVE-2020-117181 PoCAn issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and below. Its software-update packages are downloaded via…
- CVE-2020-117211 PoCload_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a…
- CVE-2020-117271 PoCA cross-site scripting (XSS) vulnerability in the AlgolPlus Advanced Order Export For WooCommerce plugin 3.1.3 for WordPress allows remote…
- CVE-2020-117321 PoCThe Media Library Assistant plugin before 2.82 for Wordpress suffers from a Local File Inclusion vulnerability in mla_gallery link=download.
- CVE-2020-117386 PoCsKEVThe Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal via ../ in the…
- CVE-2020-117492 PoCsPandora FMS 7.0 NG <= 746 suffers from Multiple XSS vulnerabilities in different browser views. A network administrator scanning a SNMP…
- CVE-2020-117982 PoCsA Directory Traversal vulnerability in the web conference component of Mitel MiCollab AWV before 8.1.2.4 and 9.x before 9.1.3 could allow…
- CVE-2020-118002 PoCsZabbix Server 2.2.x and 3.0.x before 3.0.31, and 3.2 allows remote attackers to execute arbitrary code.
- CVE-2020-118033 PoCsAn issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter jaction when interacting with the page…
- CVE-2020-118043 PoCsAn issue was discovered in Titan SpamTitan 7.07. Due to improper sanitization of the parameter quid, used in the page mailqueue.php, code…
- CVE-2020-118193 PoCsIn Rukovoditel 2.5.2, an attacker may inject an arbitrary .php file location instead of a language file and thus achieve command execution.
- CVE-2020-118511 PoCArbitrary code execution vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability…
- CVE-2020-118532 PoCsArbitrary code execution vulnerability on multiple Micro Focus products
- CVE-2020-118542 PoCsArbitrary code execution vlnerability in Operation bridge Manager, Application Performance Management and Operations Bridge…
- CVE-2020-118551 PoCAn Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The vulnerability…
- CVE-2020-118571 PoCAn Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The vulnerability…
- CVE-2020-118581 PoCCode execution with escalated privilegesn vlnerability in Operation bridge Manager and Operations Bridge (containerized) products.
- CVE-2020-118811 PoCAn array index error in MikroTik RouterOS 6.41.3 through 6.46.5, and 7.x through 7.0 Beta5, allows an unauthenticated remote attacker to…
- CVE-2020-118821 PoCThe O2 Business application 1.2.0 for Android exposes the canvasm.myo2.SplashActivity activity to other applications. The purpose of this…
- CVE-2020-118831 PoCIn Divante vue-storefront-api through 1.11.1 and storefront-api through 1.0-rc.1, as used in VueStorefront PWA, unexpected HTTP requests…
- CVE-2020-118881 PoCpython-markdown2 through 2.3.8 allows XSS because element names are mishandled unless a \w+ match succeeds. For example, an attack might…
- CVE-2020-118901 PoCAn issue was discovered in Joomla! before 3.9.17. Improper input validations in the usergroup table class could lead to a broken ACL…
- CVE-2020-118941 PoCMing (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c.
- CVE-2020-118951 PoCMing (aka libming) 0.4.8 has a heap-based buffer over-read (2 bytes) in the function decompileIF() in decompile.c.
- CVE-2020-118962 PoCsThe Treck TCP/IP stack before 6.0.1.66 allows Remote Code Execution, related to IPv4 tunneling.
- CVE-2020-118982 PoCsThe Treck TCP/IP stack before 6.0.1.66 improperly handles an IPv4/ICMPv4 Length Parameter Inconsistency, which might allow remote…
- CVE-2020-118992 PoCsKEVThe Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read.
- CVE-2020-119001 PoCThe Treck TCP/IP stack before 6.0.1.41 has an IPv4 tunneling Double Free.
- CVE-2020-119011 PoCThe Treck TCP/IP stack before 6.0.1.66 allows Remote Code execution via a single invalid DNS response.
- CVE-2020-119021 PoCThe Treck TCP/IP stack before 6.0.1.66 has an IPv6OverIPv4 tunneling Out-of-bounds Read.
- CVE-2020-119031 PoCThe Treck TCP/IP stack before 6.0.1.28 has a DHCP Out-of-bounds Read.
- CVE-2020-119041 PoCThe Treck TCP/IP stack before 6.0.1.66 has an Integer Overflow during Memory Allocation that causes an Out-of-Bounds Write.
- CVE-2020-119051 PoCThe Treck TCP/IP stack before 6.0.1.66 has a DHCPv6 Out-of-bounds Read.
- CVE-2020-119061 PoCThe Treck TCP/IP stack before 6.0.1.66 has an Ethernet Link Layer Integer Underflow.
- CVE-2020-119071 PoCThe Treck TCP/IP stack before 6.0.1.66 improperly handles a Length Parameter Inconsistency in TCP.
- CVE-2020-119081 PoCThe Treck TCP/IP stack before 4.7.1.27 mishandles '\0' termination in DHCP.
- CVE-2020-119091 PoCThe Treck TCP/IP stack before 6.0.1.66 has an IPv4 Integer Underflow.
- CVE-2020-119101 PoCThe Treck TCP/IP stack before 6.0.1.66 has an ICMPv4 Out-of-bounds Read.
- CVE-2020-119111 PoCThe Treck TCP/IP stack before 6.0.1.66 has Improper ICMPv4 Access Control.
- CVE-2020-119121 PoCThe Treck TCP/IP stack before 6.0.1.66 has a TCP Out-of-bounds Read.
- CVE-2020-119131 PoCThe Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read.
- CVE-2020-119141 PoCThe Treck TCP/IP stack before 6.0.1.66 has an ARP Out-of-bounds Read.
- CVE-2020-119151 PoCAn issue was discovered in Svakom Siime Eye 14.1.00000001.3.330.0.0.3.14. By sending a set_params.cgi?telnetd=1&save=1&reboot=1 request to…
- CVE-2020-119201 PoCAn issue was discovered in Svakom Siime Eye 14.1.00000001.3.330.0.0.3.14. A command injection vulnerability resides in the HOST/IP section…
- CVE-2020-119301 PoCThe GTranslate plugin before 2.8.52 for WordPress has Reflected XSS via a crafted link. This requires use of the hreflang tags feature…
- CVE-2020-119323 PoCsSubiquity server installer logged LUKS full disk encryption password
- CVE-2020-119372 PoCsResource exhaustion vulnerability in whoopsie
- CVE-2020-119411 PoCAn issue was discovered in Open-AudIT 3.2.2. There is OS Command injection in Discovery.
- CVE-2020-119421 PoCAn issue was discovered in Open-AudIT 3.2.2. There are Multiple SQL Injections.
- CVE-2020-119431 PoCAn issue was discovered in Open-AudIT 3.2.2. There is Arbitrary file upload.
- CVE-2020-119511 PoCAn issue was discovered on Rittal PDU-3C002DEC through 5.17.10 and CMCIII-PU-9333E0FB through 3.17.10 devices. There is a Backdoor root…
- CVE-2020-119521 PoCAn issue was discovered on Rittal PDU-3C002DEC through 5.17.10 and CMCIII-PU-9333E0FB through 3.17.10 devices. Attackers can bypass the…
- CVE-2020-119531 PoCAn issue was discovered on Rittal PDU-3C002DEC through 5.15.40 and CMCIII-PU-9333E0FB through 3.15.70_4 devices. Attackers can execute code.
- CVE-2020-119551 PoCAn issue was discovered on Rittal PDU-3C002DEC through 5.15.70 and CMCIII-PU-9333E0FB through 3.15.70 devices. There are insecure…
- CVE-2020-119561 PoCAn issue was discovered on Rittal PDU-3C002DEC through 5.17.10 and CMCIII-PU-9333E0FB through 3.17.10 devices. There is a least privilege…
- CVE-2020-119752 PoCsApache Unomi allows conditions to use OGNL scripting which offers the possibility to call static Java classes from the JDK that could…
- CVE-2020-119788 PoCsKEVAn issue was found in Apache Airflow versions 1.10.10 and below. A remote code/command injection vulnerability was discovered in one of…
- CVE-2020-119814 PoCsAn issue was found in Apache Airflow versions 1.10.10 and below. When using CeleryExecutor, if an attacker can connect to the broker…
- CVE-2020-119843 PoCsApache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE
- CVE-2020-119892 PoCsApache Shiro before 1.5.3, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an…
- CVE-2020-119901 PoCWe have resolved a security issue in the camera plugin that could have affected certain Cordova (Android) applications. An attacker who…
- CVE-2020-119912 PoCsWhen using the StreamGenerator, the code parse a user-provided XML. A specially crafted XML, including external system entities, could be…
- CVE-2020-119931 PoCApache HTTP Server versions 2.4.20 to 2.4.43 When trace/debug was enabled for the HTTP/2 module and on certain traffic edge patterns,…
- CVE-2020-119961 PoCA specially crafted sequence of HTTP/2 requests sent to Apache Tomcat 10.0.0-M1 to 10.0.0-M5, 9.0.0.M1 to 9.0.35 and 8.5.0 to 8.5.55 could…
- CVE-2020-119981 PoCA regression has been introduced in the commit preventing JMX re-bind. By passing an empty environment map to RMIConnectorServer, instead…