High severity7.5NVD Advisory· Published May 4, 2021· Updated Jun 17, 2026
CVE-2021-31164
CVE-2021-31164
Description
Apache Unomi prior to version 1.5.5 allows CRLF log injection because of the lack of escaping in the log statements.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
org.apache.unomi:unomiMaven | < 1.5.5 | 1.5.5 |
Affected products
3- Apache Software Foundation/Apache Unomiv5Range: Apache Unomi
Patches
Vulnerability mechanics
References
3- unomi.apache.org/security/cve-2021-31164nvdPatchVendor AdvisoryWEB
- github.com/advisories/GHSA-rm7f-mpcj-w4f6ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-31164ghsaADVISORY
News mentions
0No linked articles in our index yet.