CVE-2020-13936 | Apache Velocity Engine up to 2.2 Template command injection (Nessus ID 216682)
A vulnerability was found in Apache Velocity Engine up to 2.2 and classified as critical. Affected by this issue is some unknown functionality of the component Template Handler. The manipulation leads to command injection.
This vulnerability is handled as CVE-2020-13936. The attack can only be done within the local network. There is no exploit available.