idealzh

Results 1 issues of idealzh

The XstreamEngine unmarshal xml data based on XStream, but it doesn't check the data; when the data contains malicious types, then it may leads to remote code execution; The Struts2...