{"id":"CVE-2025-54466","summary":"Apache OFBiz: RCE Vulnerability in scrum plugin","details":"Improper Control of Generation of Code ('Code Injection') vulnerability leading to a possible RCE in Apache OFBiz scrum plugin.\n\nThis issue affects Apache OFBiz: before 24.09.02 only when the scrum plugin is used.\n\nEven unauthenticated attackers can exploit this vulnerability.\n\n\nUsers are recommended to upgrade to version 24.09.02, which fixes the issue.","modified":"2026-08-12T14:52:45.333916Z","published":"2025-08-15T14:13:52.584Z","database_specific":{"cwe_ids":["CWE-94"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/54xxx/CVE-2025-54466.json","unresolved_ranges":[{"extracted_events":[{"fixed":"24.09.02"}],"source":"AFFECTED_FIELD"},{"extracted_events":[{"fixed":"24.09.02"}],"source":"DESCRIPTION"}],"cna_assigner":"apache"},"references":[{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2025/08/05/1"},{"type":"WEB","url":"https://ofbiz.apache.org/download.html"},{"type":"WEB","url":"https://ofbiz.apache.org/security.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/54xxx/CVE-2025-54466.json"},{"type":"ADVISORY","url":"https://lists.apache.org/thread/14d0yd9co9gx2mctd3vyz1cc8d39n915"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-54466"},{"type":"ADVISORY","url":"https://ofbiz.apache.org/release-notes-24.09.02.html"},{"type":"REPORT","url":"https://issues.apache.org/jira/browse/OFBIZ-13276"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/apache/ofbiz-framework","events":[{"introduced":"0"},{"fixed":"a0fd48e6f8e9f7195805d6c86281b815fb2de892"}],"database_specific":{"cpe":"cpe:2.3:a:apache:ofbiz:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"24.09.02"}],"source":"CPE_RANGE"}}],"versions":["release24.09.01"],"database_specific":{"vanir_signatures_modified":"2026-08-12T14:52:45Z","vanir_signatures":[{"source":"https://github.com/apache/ofbiz-framework/commit/a0fd48e6f8e9f7195805d6c86281b815fb2de892","target":{"function":"render","file":"framework/widget/src/main/java/org/apache/ofbiz/widget/renderer/fo/ScreenFopViewHandler.java"},"deprecated":false,"digest":{"function_hash":"115239135110448458133838827146088054427","length":4499},"id":"CVE-2025-54466-082710e8","signature_type":"Function","signature_version":"v1"},{"id":"CVE-2025-54466-b8194ec6","signature_type":"Line","signature_version":"v1","source":"https://github.com/apache/ofbiz-framework/commit/a0fd48e6f8e9f7195805d6c86281b815fb2de892","target":{"file":"framework/widget/src/main/java/org/apache/ofbiz/widget/renderer/fo/ScreenFopViewHandler.java"},"deprecated":false,"digest":{"threshold":0.9,"line_hashes":["249146079106409486859352739705293824872","314012154644596642122118081014475321011","242468568323965799300793993567488478400","251410504749570407709719120966721489550"]}}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-54466.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L"}]}