CVE-2019-13116: Mulesoft Mule Runtime
Critical severity, CVSS 9.8. EPSS: 5.1% chance of exploitation in the next 30 days.
The MuleSoft Mule Community Edition runtime engine before 3.8 allows remote attackers to execute arbitrary code because of Java Deserialization, related to Apache Commons Collections
Affected products
- Mulesoft Mule Runtime: before 3.8.0 (fixed in 3.8.0)
Published 2019-10-16. Last modified 2026-06-17.