CWE-502: Deserialization of Untrusted Data vulnerability...
High severity
Unreviewed
Published
Mar 18, 2024
to the GitHub Advisory Database
•
Updated Mar 18, 2024
Description
Published by the National Vulnerability Database
Mar 18, 2024
Published to the GitHub Advisory Database
Mar 18, 2024
Last updated
Mar 18, 2024
CWE-502: Deserialization of Untrusted Data vulnerability exists that could cause remote code
execution when a malicious project file is loaded into the application by a valid user.
References