Server Side Template Injection (SSTI) vulnerability in Form Tools 3.1.1 allows attackers to run arbitrary commands via the Group Name field under the add forms section of the application.
History

Tue, 08 Apr 2025 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Formtools
Formtools form Tools
CPEs cpe:2.3:a:formtools:form_tools:3.1.1:*:*:*:*:*:*:*
Vendors & Products Formtools
Formtools form Tools

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-04-11T00:00:00

Updated: 2024-08-01T22:51:11.111Z

Reserved: 2024-01-11T00:00:00

Link: CVE-2024-22722

cve-icon Vulnrichment

Updated: 2024-08-01T22:51:11.111Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-11T20:15:33.417

Modified: 2025-04-08T15:20:57.363

Link: CVE-2024-22722

cve-icon Redhat

No data.