CVE-2018-19531

Publication date

2018-11-26 02:00:00

Family

mitre

State

PUBLISHED

Description

HTTL (aka Hyper-Text Template Language) through 1.0.11 allows remote command execution because the decodeXml function uses java.beans.XMLEncoder unsafely when configured without an xml.codec= setting.