Security Advisory

CVE-2022-25647

7.7
HIGH

Vulnerability Description

The package com.google.code.gson:gson before 2.8.9 are vulnerable to Deserialization of Untrusted Data via the writeReplace() method in internal classes, which may lead to DoS attacks.
Published Date May 1, 2022
Official Source NIST NVD Advisory