Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31795
HistoryAug 24, 2021 - 6:15 a.m.

Remote Code Execution (RCE)

2021-08-2406:15:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17

0.254 Low

EPSS

Percentile

96.7%

xstream is vulnerable to remote code execution. The vulnerability exists due to the usage of an insecure default blacklist which does not cover all the excluded XStream security framework.