Apache · Apache Shardingsphere · CVE-2021-26558
**Name of the Vulnerable Software and Affected Versions**
Apache ShardingSphere-UI versions 4.1.1 through 4.1.1
Apache ShardingSphere-UI versions prior to 5.0.0
**Description**
The Deserialization of Untrusted Data issue in Apache ShardingSphere-UI allows an attacker to inject outer link resources.
**Recommendations**
For Apache ShardingSphere-UI versions 4.1.1, update to version 5.0.0 or later.
For Apache ShardingSphere-UI versions prior to 5.0.0, update to version 5.0.0 or later.