LAMP Rapid Development Platform through 5.6.2, fixed in commit 84b0c27, contains a remote code execution vulnerability in GlueFactory that executes unsandboxed Groovy scripts from database template fields without compilation restrictions or whitelisting. Attackers can write or influence the script field via message template endpoints to execute arbitrary Groovy code and OS commands on the backend server.
{
"cwe_ids": [
"CWE-94"
],
"cna_assigner": "VulnCheck",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/69xxx/CVE-2026-69100.json"
}"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-69100.json"
"2026-08-07T22:16:20Z"
[
{
"digest": {
"length": 435.0,
"function_hash": "194547383205489769225624847227423712765"
},
"deprecated": false,
"id": "CVE-2026-69100-7eb2eea2",
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/dromara/lamp-cloud/commit/84b0c27d3693e468c2c690d9fbc8ea9c22cd34e3",
"target": {
"function": "loadNewInstance",
"file": "lamp-base/lamp-base-biz/src/main/java/top/tangyh/lamp/msg/glue/GlueFactory.java"
}
},
{
"digest": {
"length": 316.0,
"function_hash": "325107154710648580756137787378071632678"
},
"deprecated": false,
"id": "CVE-2026-69100-aea3f07c",
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/dromara/lamp-cloud/commit/84b0c27d3693e468c2c690d9fbc8ea9c22cd34e3",
"target": {
"function": "getCodeSourceClass",
"file": "lamp-base/lamp-base-biz/src/main/java/top/tangyh/lamp/msg/glue/GlueFactory.java"
}
},
{
"digest": {
"line_hashes": [
"199623738146499589891857774179367322231",
"317202539734107828214422084191402283120",
"43625102387448718373410957276712074332",
"166090959364347726206668163127484966364",
"32037910215868423562166376271450157302",
"284359532468472118675982781906373168246",
"103990408674363476003926471352396218972",
"307193119305364525200335447663466399099",
"224815451542353477057885014784132201648",
"23446247942148032979639469372724919672",
"91550277477099788603036781822334432987",
"328370264783675089448799442842590330504",
"284387528996224857296356593677402692077",
"173672276967578989169187492744417446603",
"174561641536919127455632707155371221259",
"244474368036786944903518402651912505736",
"322106403787612142760221023443930637884",
"57892117030829298278149262472523024268",
"149963700133846603161329185512007481646",
"260859626846455821316342715960607923604",
"273769725721550516775878133200401499192",
"222714133146740596678125597984700738851",
"334200363919262949102985821885460496072",
"231969745860988349645948581468941747121",
"310828909621324718871195388771562991399",
"334986291636030289305485225109915350177",
"338229324513317516494166884681290305541",
"55786984437241483090849038431465999414",
"99891119223066221334498587363800070993",
"107689480059849889885654692320290029968",
"94121508652295266596248504849886521220",
"304816745029768535210169407879526594104",
"298482586614049508011501017842450844453",
"28180016089159627187209861490069771976",
"235767489164234513525849982545561569421"
],
"threshold": 0.9
},
"deprecated": false,
"id": "CVE-2026-69100-cc43f11e",
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/dromara/lamp-cloud/commit/84b0c27d3693e468c2c690d9fbc8ea9c22cd34e3",
"target": {
"file": "lamp-base/lamp-base-biz/src/main/java/top/tangyh/lamp/msg/glue/GlueFactory.java"
}
},
{
"digest": {
"length": 297.0,
"function_hash": "236017416087917839704168132469677837350"
},
"deprecated": false,
"id": "CVE-2026-69100-cce57cc7",
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/dromara/lamp-cloud/commit/84b0c27d3693e468c2c690d9fbc8ea9c22cd34e3",
"target": {
"function": "exeGroovyScript",
"file": "lamp-base/lamp-base-biz/src/main/java/top/tangyh/lamp/msg/glue/GlueFactory.java"
}
}
]