Описание
glazedlists XML Deserialization vulnerability
An XML Deserialization vulnerability in glazedlists v1.11.0 allows an attacker to execute arbitrary code via the BeanXMLByteCoder.decode() parameter.
Пакеты
Наименование
com.glazedlists:glazedlists
maven
Затронутые версииВерсия исправления
= 1.11.0
Отсутствует
Связанные уязвимости
CVSS3: 7.5
redhat
больше 2 лет назад
An XML Deserialization vulnerability in glazedlists v1.11.0 allows an attacker to execute arbitrary code via the BeanXMLByteCoder.decode() parameter.
CVSS3: 9.8
nvd
больше 2 лет назад
An XML Deserialization vulnerability in glazedlists v1.11.0 allows an attacker to execute arbitrary code via the BeanXMLByteCoder.decode() parameter.