VYPR

openEQUELLA

by OpenEQUELLA

Source repositories

CVEs (1)

  • CVE-2026-94109HigSep 20, 2026
    risk 0.50cvss 8.8epss —

    openEQUELLA versions before 2026.1.0 contain a remote code execution vulnerability in FreeMarker template compilation due to an unsandboxed TemplateClassResolver configuration. Authenticated attackers can inject malicious template expressions through collection summaries,…