Description
webmagic-extension v0.9.0 and below was discovered to contain a code injection vulnerability via the component us.codecraft.webmagic.downloader.PhantomJSDownloader.
Remediation
References
https://github.com/code4craft/webmagic/issues/1122
Related Vulnerabilities
CVE-2020-7611 Vulnerability in maven package io.micronaut:micronaut-http-client
CVE-2022-41401 Vulnerability in maven package org.openrefine:main
CVE-2023-3691 Vulnerability in npm package layui
CVE-2013-5679 Vulnerability in maven package org.owasp.esapi:esapi
CVE-2020-13942 Vulnerability in maven package org.apache.unomi:unomi-kar