Beveiligingsadvies

CVE-2021-42010

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-10-24 00:00:00
Laatst bijgewerkt 2025-05-07 15:53:35
Toegewezen door apache
CVSS-score 9.8
Status PUBLISHED

Beschrijving

Heron versions <= 0.20.4-incubating allows CRLF log injection because of the lack of escaping in the log statements. Please update to version 0.20.5-incubating which addresses this issue.