Junglewise Threat Intelligence

CVE-2021-43859: Denial of Service by injecting highly recursive collections or maps in XStream

CVE-2021-43859 · Severity: low · CVSS 3.1 · Published 2022-02-01

Technologies: com.thoughtworks.xstream:xstream (Maven). Vendors: Maven.

Executive brief

Denial of Service by injecting highly recursive collections or maps in XStream

Affected products

  • Maven com.thoughtworks.xstream:xstream

Related threats