Description
webmagic-extension v0.9.0 and below was discovered to contain a code injection vulnerability via the component us.codecraft.webmagic.downloader.PhantomJSDownloader.
Remediation
References
https://github.com/code4craft/webmagic/issues/1122
Related Vulnerabilities
CVE-2020-11887 Vulnerability in npm package svg2png
CVE-2019-10806 Vulnerability in npm package vega-util
CVE-2020-7736 Vulnerability in npm package bmoor
CVE-2007-5333 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2021-44667 Vulnerability in maven package com.alibaba.nacos:nacos-common