Vulnerabilities
Vulnerable Software
Mulesoft:  >> Mule Runtime  >> 3.2.0  Security Vulnerabilities
The MuleSoft Mule Community Edition runtime engine before 3.8 allows remote attackers to execute arbitrary code because of Java Deserialization, related to Apache Commons Collections
CVSS Score
9.8
EPSS Score
0.027
Published
2019-10-16
Directory Traversal in APIkit, HTTP connector, and OAuth2 Provider components in MuleSoft Mule Runtime 3.2.0 and higher released before August 1 2019, MuleSoft Mule Runtime 4.1.0 and higher released before August 1 2019, and all versions of MuleSoft API Gateway released before August 1 2019 allow remote attackers to read files accessible to the Mule process.
CVSS Score
7.5
EPSS Score
0.004
Published
2019-08-30


Contact Us

Shodan ® - All rights reserved