Vulnerabilities (CVE)

Filtered by vendor Google Subscribe
Filtered by product Gson
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-25647 4 Debian, Google, Netapp and 1 more 6 Debian Linux, Gson, Active Iq Unified Manager and 3 more 2023-12-10 5.0 MEDIUM 7.5 HIGH
The package com.google.code.gson:gson before 2.8.9 are vulnerable to Deserialization of Untrusted Data via the writeReplace() method in internal classes, which may lead to DoS attacks.