Junglewise Threat Intelligence

CVE-2020-26258: Server-Side Forgery Request can be activated unmarshalling with XStream

CVE-2020-26258 · Severity: low · CVSS 3.1 · Published 2020-12-21

Technologies: com.thoughtworks.xstream:xstream (Maven). Vendors: Maven.

Executive brief

Server-Side Forgery Request can be activated unmarshalling with XStream

Affected products

  • Maven com.thoughtworks.xstream:xstream

Related threats