Advisories for Maven/Org.apache.unomi/Unomi package

2021
2020

Injection Vulnerability

It is possible to inject malicious OGNL or MVEL scripts into the /context.json public endpoint. In Apache Unomi scripts are now completely filtered from the input. It is highly recommended to upgrade to the latest available version of the release to fix this problem.