Количество 2
Количество 2
CVE-2021-36161
Some component in Dubbo will try to print the formated string of the input arguments, which will possibly cause RCE for a maliciously customized bean with special toString method. In the latest version, we fix the toString call in timeout, cache and some other places. Fixed in Apache Dubbo 2.7.13
GHSA-qvm7-23cj-437v
Remote Code Execution in Apache Dubbo
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-36161 Some component in Dubbo will try to print the formated string of the input arguments, which will possibly cause RCE for a maliciously customized bean with special toString method. In the latest version, we fix the toString call in timeout, cache and some other places. Fixed in Apache Dubbo 2.7.13 | CVSS3: 9.8 | 3% Низкий | больше 4 лет назад | |
GHSA-qvm7-23cj-437v Remote Code Execution in Apache Dubbo | CVSS3: 9.8 | 3% Низкий | больше 4 лет назад |
Уязвимостей на страницу