logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2017-20189

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2017-20189

Description:
In Clojure before 1.9.0, classes can be used to construct a serialized object that executes arbitrary code upon deserialization. This is relevant if a server deserializes untrusted objects.
Last updated date:
01/30/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
01/30/2024
Reference url to background

https://clojure.atlassian.net/browse/CLJ-2204

Type:
exploit
Confidence:
HIGH
Date of publishing:
01/30/2024
Reference url to background

https://hackmd.io/%40fe1w0/HyefvRQKp

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy