Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-67829
HistoryAug 23, 2021 - 12:00 a.m.

XStream Denial of Service Vulnerability (CNVD-2021-67829)

2021-08-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
6

0.018 Low

EPSS

Percentile

88.1%

XStream is an open source Java class library that is mainly used to serialize objects to XML (JSON) or deserialize them to objects.XStream 1.4.17 and earlier versions have an arbitrary code execution vulnerability that can be exploited by attackers to cause a denial of service.

CPENameOperatorVersion
xstream xstreamle1.4.17