Product
hubspot jinjava
4 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-25526
CVE-2025-59340
CVE-2020-12668
CVE-2018-18893
< 2.7.6
JinJava is a Java-based template engine based on django template syntax, adapted to render jinja templates. Prior to versions 2.7.
< 2.8.1
jinjava is a Java-based template engine based on django template syntax, adapted to render jinja templates. Priori to 2.8.1, by us
< 2.5.4
Jinjava before 2.5.4 allow access to arbitrary classes by calling Java methods on objects passed into a Jinjava context. This coul
< 2.4.6
Jinjava before 2.4.6 does not block the getClass method, related to com/hubspot/jinjava/el/ext/JinjavaBeanELResolver.java.