Description
An issue found in OpenGoofy Hippo4j v.1.4.3 allows attackers to escalate privileges via the ThreadPoolController of the tenant Management module.
Remediation
References
https://github.com/opengoofy/hippo4j/issues/1059
Related Vulnerabilities
CVE-2017-9787 Vulnerability in maven package org.apache.struts:struts2-core
CVE-2022-23302 Vulnerability in maven package log4j:log4j
CVE-2023-2512 Vulnerability in npm package workerd
CVE-2023-46998 Vulnerability in maven package org.webjars.bower:bootbox.js
CVE-2013-2055 Vulnerability in maven package org.apache.wicket:wicket