This Metasploit module exploits OpenMetadata versions 1.2.3 and below by chaining an API authentication bypass using JWT tokens along with a SpEL injection vulnerability to achieve arbitrary command execution.
🛡️ VERIFIED CYBER INTELLIGENCE ID: #2252322
💾 OpenMetadata 1.2.3 Authentication Bypass / SpEL Injection
⏱️ vor 715d 14h (15.08.2024 um 17:28 Uhr) 📂 💾 IT Security Tools 📡 Feed 🔗 Quelle: packetstormsecurity.com