78389675-0358-46e5-81c7-04186dbfb8a8
Format: CycloneDX
The ObjectSerializationDecoder in Apache MINA uses Java’s native deserialization protocol to process...
A series of deserialization vulnerabilities have been discovered in Codehaus 1.9.x implemented in EA...
In Eclipse Parsson before 1.0.4 and 1.1.3, a document with a large depth of nested objects can allow...
The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and async...
Authorization Bypass Through User-Controlled Key vulnerability in Apache ZooKeeper. If SASL Quorum P...
Applications and libraries which misuse connection.serverAuthenticate (via callback field ServerConf...
Schema parsing in the Java SDK of Apache Avro 1.11.3 and previous versions allows bad actors to exec...
A cleverly devised username might bypass LDAP authentication checks. In LDAP-authenticated Derby in...
pgjdbc, the PostgreSQL JDBC Driver, allows attacker to inject SQL if using PreferQueryMode=SIMPLE. N...
A flaw was found in Infinispan, which does not detect circular object references when unmarshalling....