Description
A bypass in the component sofa-hessian of Solon before v2.3.3 allows attackers to execute arbitrary code via providing crafted payload.
Remediation
References
https://github.com/noear/solon/compare/v2.3.2...v2.3.3
https://github.com/noear/solon/issues/145
Related Vulnerabilities
CVE-2020-7743 Vulnerability in maven package org.webjars:mathjs
CVE-2020-7752 Vulnerability in npm package systeminformation
CVE-2020-28052 Vulnerability in maven package org.bouncycastle:bcprov-jdk15on
CVE-2023-26105 Vulnerability in npm package utilities
CVE-2018-25031 Vulnerability in maven package org.webjars.npm:swagger-ui-dist