Total vulnerabilities in the database
JBoss RESTEasy before version 3.1.2 could be forced into parsing a request with YamlProvider, resulting in unmarshalling of potentially untrusted data which could allow an attacker to execute arbitrary code with RESTEasy application permissions.
Software | From | Fixed in |
---|---|---|
redhat / resteasy | - | 3.1.1.x |
![]() |
- | 3.1.2.Final |