- What is the severity of CVE-2021-26295?
- CVE-2021-26295 has been scored as a critical severity vulnerability.
- How to fix CVE-2021-26295?
- As a workaround for remediating CVE-2021-26295: Upgrade to at least 17.12.06 or apply the patch at https://github.com/apache/ofbiz-framework/commit/af9ed4e/
- Is CVE-2021-26295 being actively exploited in the wild?
- It is possible that CVE-2021-26295 is being exploited or will be exploited in a near future based on public information. According to its EPSS score, there is a ~94% probability that this vulnerability will be exploited by malicious actors in the next 30 days.
- What software or system is affected by CVE-2021-26295?
- CVE-2021-26295 affects Apache Software Foundation Apache OFBiz.