vulnerability

Apache OFBiz: CVE-2021-26295: Unsafe deserialization vulnerability.

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Mar 22, 2021
Added
Dec 23, 2024
Modified
Jan 10, 2025

Description

Apache OFBiz has unsafe deserialization prior to 17.12.06. An unauthenticated attacker can use this vulnerability to successfully take over Apache OFBiz.

Solution

apache-ofbiz-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.