Product
Open-Web-Analytics up to version 1.8.1 contains a remote deserialization vulnerability in the Remote Event Queue Endpoint that allows unauthenticated attackers to execute arbitrary code.