CVE-2019-13116

Description

The MuleSoft Mule Community Edition runtime engine before 3.8 allows remote attackers to execute arbitrary code because of Java Deserialization, related to Apache Commons Collections

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
2.389

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2019-13116 are fixed in MuleSoft-mule 3.8.0Windows
Vulnerabilities CVE-2019-13116 are fixed in MuleSoft-mule for Linux 3.8.0Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234