CVE-2021-31649
EPSS 0.40%JFinal Java Deserialization Vulnerability
Published: 5/24/2022Modified: 12/7/2024
Description
In applications using jfinal 4.9.08 and below, there is a deserialization vulnerability when using redis which can lead to remote code execution
Affected packages (1)
- Maven/com.jfinal:jfinalfrom 0, <= 4.9.08