Description
PowerJob v4.3.3 was discovered to contain a remote command execution (RCE) vulnerability via the instanceId parameter at /instance/detail.
Remediation
References
https://github.com/PowerJob/PowerJob/
https://github.com/PowerJob/PowerJob/issues/675
https://novysodope.github.io/2023/07/02/100/
Related Vulnerabilities
CVE-2021-3163 Vulnerability in npm package quill
CVE-2020-12265 Vulnerability in maven package org.webjars.npm:decompress
CVE-2022-36083 Vulnerability in maven package org.webjars.npm:jose
CVE-2019-5484 Vulnerability in maven package org.webjars.npm:bower
CVE-2023-40814 Vulnerability in maven package org.opencrx:opencrx-core-models