Undefined · Undefined · CVE-2026-51368
**Name of the Vulnerable Software and Affected Versions**
tongweb version 7.0.24
**Description**
An issue in the Spring HttpInovkerServiceExporter component allows a remote attacker to execute arbitrary code by sending a crafted request to the 'console/heimdall' endpoint.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.