Researchers have built proof-of-concept exploits for an unpatched unserialize vulnerability in Apache Commons Collections, a library used in most Java rollouts. For close to 10 months, a critical ...
A popular Java library has a serious vulnerability, discovered over nine months ago, that continues to put thousands of Java applications and servers at risk of remote code execution attacks. The flaw ...
A deserialization vulnerability in Apache Commons Collections could lead to remote code execution, but the sky isn't falling yet Researchers from Foxglove Security have confirmed deserialization ...