Total vulnerabilities in the database
In Gradle Enterprise before 2021.1.3, a crafted request can trigger deserialization of arbitrary unsafe Java objects. The attacker must have the encryption and signing keys.
Software | From | Fixed in |
---|---|---|
gradle / gradle | 2017.2 | 2021.1.3 |