Количество 2
Количество 2
CVE-2020-20136
около 5 лет назад
QuantConnect Lean versions from 2.3.0.0 to 2.4.0.1 are affected by an insecure deserialization vulnerability due to insecure configuration of TypeNameHandling property in Json.NET library.
CVSS3: 9.8
EPSS: Низкий
GHSA-ww7r-278h-48mh
больше 3 лет назад
QuantConnect Lean vulnerable to insecure deserialization
CVSS3: 9.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-20136 QuantConnect Lean versions from 2.3.0.0 to 2.4.0.1 are affected by an insecure deserialization vulnerability due to insecure configuration of TypeNameHandling property in Json.NET library. | CVSS3: 9.8 | 0% Низкий | около 5 лет назад | |
GHSA-ww7r-278h-48mh QuantConnect Lean vulnerable to insecure deserialization | CVSS3: 9.8 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20