CVE-2021-35450: Injection Vulnerability
(updated )
A Server Side Template Injection in the Entando Admin Console allows a user with privileges to execute FreeMarker template with command execution via freemarker.template.utility.Execute
References
Detect and mitigate CVE-2021-35450 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →