eureka icon indicating copy to clipboard operation
eureka copied to clipboard

Upgrade xstream-1.4.19 to 1.4.20 for CVE-2022-40151 and CVE-2022-41966.

Open gdut-yy opened this issue 1 year ago • 2 comments

https://x-stream.github.io/news.html

December 24, 2022 XStream 1.4.20 released

This maintenance release addresses the security vulnerabilities CVE-2022-40151 and CVE-2022-41966, causing a Denial of Service by raising a stack overflow. It also provides new converters for Optional and Atomic types.

gdut-yy avatar Jan 07 '23 07:01 gdut-yy