Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

XStream Core latest version 1.4.19 is vulnerable #319

Closed
ncteam1990 opened this issue Nov 22, 2022 · 1 comment
Closed

XStream Core latest version 1.4.19 is vulnerable #319

ncteam1990 opened this issue Nov 22, 2022 · 1 comment

Comments

@ncteam1990
Copy link

Hello Team,

Xstream core latest version is vulnerable. It has reported with below mentioned CVE.

CVE-2022-40156 CVE-2022-40155 CVE-2022-40154 CVE-2022-40153 CVE-2022-40151

Could you please let us know when are you planning to publish a patch for the same?
Any expected release date for a nonvulnerable version?

@joehni
Copy link
Member

joehni commented Nov 23, 2022

There's only CVE-2022-40151, see #304

@joehni joehni closed this as completed Nov 23, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants