Vulnerability CVE-2023-46279


Published: 2023-12-15

Description:
Deserialization of Untrusted Data vulnerability in Apache Dubbo.This issue only affects Apache Dubbo 3.1.5.

Users are recommended to upgrade to the latest version, which fixes the issue.

Type:

CWE-502

(Deserialization of Untrusted Data)

 References:
https://lists.apache.org/thread/zw53nxrkrfswmk9n3sfwxmcj7x030nmo
http://www.openwall.com/lists/oss-security/2023/12/15/3

Copyright 2026, cxsecurity.com

 

Back to Top