Apache Unomi log injection
CVE-2021-31164
7.5HIGH
What is CVE-2021-31164?
Apache Unomi prior to version 1.5.5 allows CRLF log injection because of the lack of escaping in the log statements.
Affected Version(s)
Apache Unomi Apache Unomi < 1.5.5