Vulnerabilities (CVE)

Filtered by vendor Redhat Subscribe
Filtered by product Fabric8-maven
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-10721 1 Redhat 1 Fabric8-maven 2024-11-21 6.9 MEDIUM 7.8 HIGH
A flaw was found in the fabric8-maven-plugin 4.0.0 and later. When using a wildfly-swarm or thorntail custom configuration, a malicious YAML configuration file on the local machine executing the maven plug-in could allow for deserialization of untrusted data resulting in arbitrary code execution. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.