Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-94109— openEQUELLA before 2026.1.0 Remote Code Execution via FreeMarker Template Injection

Quick assessment

Affected
openequella openEQUELLA
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

openEQUELLA 2026.1.0 之前的版本存在一个远程代码执行漏洞,原因是 FreeMarker 模板编译过程中使用了未经沙箱隔离的 配置。经过身份验证的攻击者可以通过在集合摘要、仪表板小部件或 MIME 模板中注入恶意的模板表达式,实例化诸如 等危险类,并调用 来执行任意命令。

CVSS 8.8 · High
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-94109

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
openEQUELLA before 2026.1.0 Remote Code Execution via FreeMarker Template Injection
Source: CVE Program / CVE List V5
Vulnerability Description
openEQUELLA versions before 2026.1.0 contain a remote code execution vulnerability in FreeMarker template compilation due to an unsandboxed TemplateClassResolver configuration. Authenticated attackers can inject malicious template expressions through collection summaries, dashboard portlets, or MIME templates to instantiate dangerous classes like freemarker.template.utility.Execute and invoke Runtime.exec for arbitrary command execution.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
CWE-1336
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
openequella openEQUELLA 0 ~ 2026.1.0 -

II. Public POCs for CVE-2026-94109

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-94109

登录查看更多情报信息。

Patches & Fixes for CVE-2026-94109 (1)

Vendor Advisories for CVE-2026-94109 (1)

Vendor Pages for CVE-2026-94109 (1)

Other References for CVE-2026-94109 (2)

IV. Related Vulnerabilities

V. Comments for CVE-2026-94109

No comments yet


Leave a comment