seroval是Alexis H. Munsayac个人开发者的一个格式化Java库。 seroval 1.4.0及之前版本存在安全漏洞,该漏洞源于反序列化过程中处理被覆盖的过大数组长度值,可能导致处理时间显著增加。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-23956 | 7.5 HIGH | seroval affected by Denial of Service via RegExp serialization |
| CVE-2026-24006 | 7.5 HIGH | Seroval affected by Denial of Service via Deeply Nested Objects |
No comments yet