VYPR

Maven package

org.infinispan.protostream/protostream

pkg:maven/org.infinispan.protostream/protostream

Vulnerabilities (1)

  • CVE-2023-5236Dec 18, 2023
    affected < 4.6.2.Finalfixed 4.6.2.Final

    A flaw was found in Infinispan, which does not detect circular object references when unmarshalling. An authenticated attacker with sufficient permissions could insert a maliciously constructed object into the cache and use it to cause out of memory errors and achieve a denial of