Junglewise Threat Intelligence

CVE-2024-47072: XStream is vulnerable to a Denial of Service attack due to stack overflow from a manipulated binary input stream

CVE-2024-47072 · Severity: low · CVSS 3.1 · Published 2024-11-07

Technologies: com.thoughtworks.xstream:xstream (Maven). Vendors: Maven.

Executive brief

XStream is vulnerable to a Denial of Service attack due to stack overflow from a manipulated binary input stream

Affected products

  • Maven com.thoughtworks.xstream:xstream

Related threats