HtmlUnit is a GUI-less browser for Java programs. HtmlUnit is vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage. This vulnerability has been patched in version 3.9.0
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| org.htmlunit:htmlunit(Maven) | 0 | 3.9.0 | N/A |
CVSS Metrics