-
Support the name and version identification of the third-party jar package of Java programs, such as fastjson.jar
Fastjson < 1.2.67 deserialization Remote Code Execution Vulnerability
Traverse t…
-
**Describe the bug**
Post请求的时候,设置请求体为json,在发送请求的时候,自动把花括号给去掉了
**To Reproduce**
Steps to reproduce the behavior:
1. Post请求的时候,设置请求体为json,在发送请求的时候,自动把花括号给去掉了
2. 导致后端报错: 错误信息
```
JSON parse erro…
-
https://su18.org/post/fastjson-1.2.68/
你救赎的人 终将成为你的光
-
Dubbo 3 needs to support a variety of protocols to facilitate users to implement different situations and need to be implemented based on dubbo-spi-extension.
Project requirements:
- Dubbo 3 suppo…
-
出于安全考虑,我们项目将fastjson作了统一替换,
在引入Seata时,能否做到不引入fastjson?
Seata中undo默认使用jackson进行序列化,但有些地方还是使用的fastjson,
能否整体替换成其他序列化工具?
-
检测到 C0602/dus-system 一共引入了251个开源组件,存在319个漏洞
```
漏洞标题:Fastjson org.apache.rocketmq:rocketmq-common@4.3.0->org.apache.rocketmq:rocketmq-remoting@4.3.0->com.alibaba:fastjson@1.2.29
```
另外还有319个漏洞,详细报告:ht…
ghost updated
2 years ago
-
检测到 Josh-Zhen/kingserp 一共引入了231个开源组件,存在14个漏洞
```
漏洞标题:Fastjson com.alibaba:fastjson@1.2.50
```
另外还有14个漏洞,详细报告:https://mofeisec.com/jr?p=a31ac2
ghost updated
2 years ago
-
fastjson三年时间爆出三个等级较高的漏洞, 我们项目不得不去掉相关依赖, 强烈建议去掉这个依赖
-
As the title implies, add benchmark for fastjson2
[fastjson2](https://github.com/alibaba/fastjson2) is successor of [fastjson](https://github.com/alibaba/fastjson)
-
Hi, I encountered the same problem as #109 . When I was building the release package, it kept failing:
`Type com.novi.serde.ArrayLen is defined multiple times: /Users/ontwang/.gradle/caches/transfor…