GHSA-v525-c3g5-cg9p
HIGHCVE-2020-36282JMS Client for RabbitMQ 1.x before 1.15.2 and 2.x before 2.2.0 is vulnerable to unsafe deserialization that can result in code execution via crafted StreamMessage data.
- Affected
- >= 1.0, < 1.15.2, >= 2.0, < 2.2.0
- Fixed in
- 1.15.2
- Weakness
- CWE-502
- Published
- 2021-12-10
- Source
- github