Alibaba fastJSON 1.2.75

CPE Details

Alibaba fastJSON 1.2.75
1.2.75
2022-06-14
17h55 +00:00
2022-06-17
12h38 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:alibaba:fastjson:1.2.75:*:*:*:*:*:*:*

Informations

Vendor

alibaba

Product

fastjson

Version

1.2.75

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2022-25845 2022-06-10 20h05 +00:00 The package com.alibaba:fastjson before 1.2.83 are vulnerable to Deserialization of Untrusted Data by bypassing the default autoType shutdown restrictions, which is possible under certain conditions. Exploiting this vulnerability allows attacking remote servers. Workaround: If upgrading is not possible, you can enable [safeMode](https://github.com/alibaba/fastjson/wiki/fastjson_safemode).
9.8
Critique