Description
A bypass in the component sofa-hessian of Solon before v2.3.3 allows attackers to execute arbitrary code via providing crafted payload.
Remediation
References
https://github.com/noear/solon/compare/v2.3.2...v2.3.3
https://github.com/noear/solon/issues/145
Related Vulnerabilities
CVE-2020-7020 Vulnerability in maven package org.elasticsearch:elasticsearch
CVE-2023-48967 Vulnerability in maven package org.noear:solon.serialization.fury
CVE-2019-17195 Vulnerability in maven package com.nimbusds:nimbus-jose-jwt
CVE-2019-16762 Vulnerability in npm package slpjs
CVE-2023-4043 Vulnerability in maven package org.eclipse.parsson:parsson