Headline
GHSA-2v42-xp3j-47m4: Xuxueli xxl-job template injection vulnerability
A vulnerability classified as problematic was found in Xuxueli xxl-job version 2.4.0. This vulnerability affects the function deserialize
of the file com/xxl/job/core/util/JdkSerializeTool.java
of the component Template Handler
. The manipulation leads to injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-259480.
Xuxueli xxl-job template injection vulnerability
Low severity GitHub Reviewed Published Apr 6, 2024 to the GitHub Advisory Database • Updated Apr 8, 2024