High severity8.8NVD Advisory· Published Sep 21, 2024· Updated Jun 17, 2026
CVE-2024-42323
CVE-2024-42323
Description
SnakeYaml Deser Load Malicious xml rce vulnerability in Apache HertzBeat (incubating).
This vulnerability can only be exploited by authorized attackers. This issue affects Apache HertzBeat (incubating): before 1.6.0.
Users are recommended to upgrade to version 1.6.0, which fixes the issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- lists.apache.org/thread/dwpwm572sbwon1mknlwhkpbom2y7skbxnvdMailing ListVendor Advisory
- lists.apache.org/thread/r0c4tost4bllqc1n9q6rmzs1slgsq63tnvdMailing ListVendor Advisory
- www.openwall.com/lists/oss-security/2024/09/21/1nvdMailing List
News mentions
0No linked articles in our index yet.