Vulnerabilities (CVE)

Filtered by vendor Apache Subscribe
Filtered by product Myfaces Trinidad
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-5019 1 Apache 1 Myfaces Trinidad 2023-12-10 7.5 HIGH 9.8 CRITICAL
CoreResponseStateManager in Apache MyFaces Trinidad 1.0.0 through 1.0.13, 1.2.x before 1.2.15, 2.0.x before 2.0.2, and 2.1.x before 2.1.2 might allow attackers to conduct deserialization attacks via a crafted serialized view state string.