VYPR

Maven package

com.cronutils/cron-utils

pkg:maven/com.cronutils/cron-utils

Vulnerabilities (2)

  • CVE-2021-41269Nov 15, 2021
    affected < 9.1.6fixed 9.1.6

    cron-utils is a Java library to define, parse, validate, migrate crons as well as get human readable descriptions for them. In affected versions A template Injection was identified in cron-utils enabling attackers to inject arbitrary Java EL expressions, leading to unauthenticate

  • CVE-2020-26238Nov 24, 2020
    affected < 9.1.3fixed 9.1.3

    Cron-utils is a Java library to parse, validate, migrate crons as well as get human readable descriptions for them. In cron-utils before version 9.1.3, a template Injection vulnerability is present. This enables attackers to inject arbitrary Java EL expressions, leading to unauth