Description
An XML Deserialization vulnerability in glazedlists v1.11.0 allows an attacker to execute arbitrary code via the BeanXMLByteCoder.decode() parameter.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1592 | An XML Deserialization vulnerability in glazedlists v1.11.0 allows an attacker to execute arbitrary code via the BeanXMLByteCoder.decode() parameter. |
Github GHSA |
GHSA-p6m6-9j36-vfjx | glazedlists XML Deserialization vulnerability |
References
History
Thu, 23 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-01-23T14:55:34.709Z
Reserved: 2023-04-29T00:00:00.000Z
Link: CVE-2023-31890
Updated: 2024-08-02T15:03:27.122Z
Status : Modified
Published: 2023-05-16T16:15:10.343
Modified: 2025-01-23T15:15:09.050
Link: CVE-2023-31890
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA