Open github-actions[bot] opened 6 months ago
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/2
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/43
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/63
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/64
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/65
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/67
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/68
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/69
Veracode issue link to PR: https://github.com/tsaekao/verademo-java/pull/70
Veracode Software Composition Analysis
TcpSocketServer
andUdpSocketServer
when listening for log data allows an attacker to execute arbitrary code via a malicious deserialization gadget.Links: