Skip to content

XStream高危漏洞 #4167

@chendx79

Description

@chendx79

现在最新版本1.9.1使用的XStream库还是1.4.17,存在下面的漏洞,建议升到最新的XStream库后再发一个Release。

漏洞级别:高危
漏洞名称:XStream < 1.4.18 多个远程代码执行漏洞 (CVE-2021-39139等)

修复方案:
升级XStream到当前最新版本1.4.18
下载地址:https://x-stream.github.io/download.html

Metadata

Metadata

Assignees

No one assigned

    Labels

    area/securityCategorizes issue or PR as related to securitystale

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions