Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 18 Feb 2026 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Running-elephant
Running-elephant datart |
|
| Vendors & Products |
Running-elephant
Running-elephant datart |
Tue, 17 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
cvssV3_1
|
Tue, 17 Feb 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Server-Side Template Injection (SSTI) vulnerability in the Freemarker template engine of Datart v1.0.0-rc.3 allows authenticated attackers to execute arbitrary code via injecting crafted Freemarker template syntax into the SQL script field. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-02-17T15:54:28.629Z
Reserved: 2026-01-09T00:00:00.000Z
Link: CVE-2025-70830
Updated: 2026-02-17T15:51:07.610Z
Status : Deferred
Published: 2026-02-17T16:20:25.833
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-70830
No data.
OpenCVE Enrichment
Updated: 2026-02-18T10:44:26Z