Vulnerabilities > Xstream Project > Xstream > 1.4.11
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-12-16 | CVE-2020-26259 | XStream is a Java library to serialize objects to XML and back again. | 6.8 |
2020-12-16 | CVE-2020-26258 | Server-Side Request Forgery (SSRF) vulnerability in multiple products XStream is a Java library to serialize objects to XML and back again. | 7.7 |
2020-11-16 | CVE-2020-26217 | XStream before version 1.4.14 is vulnerable to Remote Code Execution.The vulnerability may allow a remote attacker to run arbitrary shell commands only by manipulating the processed input stream. | 8.8 |