Jpress · Jpress · CVE-2022-23330
**Name of the Vulnerable Software and Affected Versions**
jpress version 4.2.0
**Description**
A remote code execution issue in HelloWorldAddonController.java allows attackers to execute arbitrary code via a crafted JAR package.
**Recommendations**
For jpress version 4.2.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.