Details
-
Bug
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
None
-
None
-
None
Description
The user should not be able to run java api's such as:
Runtime.getRuntime().exec("xxx");
CVE-2022-42890
Attachments
Issue Links
- relates to
-
FOP-3104 A FOP 2.7.1 hotfix release with only updated batik dependencies to 1.16
- Resolved