Unrated severityNVD Advisory· Published Sep 24, 2021· Updated Aug 4, 2024
CVE-2021-41588
CVE-2021-41588
Description
In Gradle Enterprise before 2021.1.3, a crafted request can trigger deserialization of arbitrary unsafe Java objects. The attacker must have the encryption and signing keys.
Affected products
2- Gradle/Gradle Enterprisedescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- security.gradle.com/advisory/2021-03mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.