Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-c29g-q3h3-mwcf: xxl-rpc deserialization vulnerability

xxl-rpc v1.7.0 was discovered to contain a deserialization vulnerability via the component com.xxl.rpc.core.remoting.net.impl.netty.codec.NettyDecode#decode.

ghsa
#vulnerability#git

xxl-rpc deserialization vulnerability

Moderate severity GitHub Reviewed Published Jun 7, 2023 to the GitHub Advisory Database • Updated Jun 9, 2023

Related news

CVE-2023-33496: record/deserialization_vulnerability_report.md at main · edirc-wong/record

xxl-rpc v1.7.0 was discovered to contain a deserialization vulnerability via the component com.xxl.rpc.core.remoting.net.impl.netty.codec.NettyDecode#decode.