Vulnerabilities > Smartbear > Collaborator > 13.3.13100

DATE CVE VULNERABILITY TITLE RISK
2021-01-11 CVE-2020-26118 OS Command Injection vulnerability in Smartbear Collaborator
In SmartBear Collaborator Server through 13.3.13302, use of the Google Web Toolkit (GWT) API introduces a post-authentication Java deserialization vulnerability.
network
low complexity
smartbear CWE-78
critical
9.0