Junglewise Threat Intelligence

CVE-2019-10173: Deserialization of Untrusted Data and Code Injection in xstream

CVE-2019-10173 · Severity: low · CVSS 3.1 · Published 2019-07-26

Technologies: com.thoughtworks.xstream:xstream (Maven). Vendors: Maven.

Executive brief

Deserialization of Untrusted Data and Code Injection in xstream

Affected products

  • Maven com.thoughtworks.xstream:xstream

Related threats