📦 Unomi

by Apache

🔍 What is Unomi?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-13942

CRITICAL CVSS 9.8 Nov 24, 2020

CVE-2020-13942 is a critical remote code execution vulnerability in Apache Unomi that allows attackers to inject malicious OGNL or MVEL scripts through the /context.json public endpoint. This affects ...

CVE-2021-31164

HIGH CVSS 7.5 May 4, 2021

Apache Unomi versions before 1.5.5 are vulnerable to CRLF log injection due to improper escaping in log statements. This allows attackers to inject malicious content into log files, potentially leadin...