-
Bug
-
Resolution: Fixed
-
Low
-
7.6.15, 8.5.4, 7.13.13, 8.9.0
-
7.06
-
Severity 2 - Major
-
This ticket documents an improvement to the Velocity Uberspector's security, locking down which classes can be accessed. This change is a defence-in-depth against potential Remote Code Execution (RCE) and Injection attacks.
The versions which do not have this improvement are before version 8.12.3.
Pre-improvement versions:
- version < 8.12.3
Improved versions:
- 8.12.3
- 8.13.0
- 8.14.0