New Plug-in for Detecting Deserialization Remote Code Execution Vulnerability in Jackson
Jul 23 2019
Content
Target customers: all users who use Jackson versions earlier than 2.9.9. Features released: Attackers can exploit the deserialization RCE vulnerability in Jackson to achieve remote code execution, thereby gaining full control over affected servers. We recommend that users of this component perform security checks.