seroval是Alexis H. Munsayac个人开发者的一个格式化Java库。 seroval 1.4.0及之前版本存在安全漏洞,该漏洞源于反序列化特制RegExp时可能耗尽内存或导致正则表达式拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-23957 | 7.5 HIGH | seroval is vulnerable to Denial of Service via array serialization |
| CVE-2026-24006 | 7.5 HIGH | Seroval affected by Denial of Service via Deeply Nested Objects |
No comments yet