CVE-2021-31649

EPSS 0.40%

JFinal Java Deserialization Vulnerability

Published: 5/24/2022Modified: 12/7/2024

Description

In applications using jfinal 4.9.08 and below, there is a deserialization vulnerability when using redis which can lead to remote code execution

Affected packages (1)

References (3)