CVE-2022-25845: Fastjson RCE Vulnerability that Affects Java Apps
posted by rouiejay12 in : threats

CVE-2022-25845 is a high-severity security flaw (rating 8.1 out of 10 on the CVSS scale) in the well-known Fastjson library which could be used in remote code execution attacks.

Fortunately, the vulnerability is already patched. The vulnerability stems from deserialization of untrusted data in the AutoType feature, and was fixed by the project maintainers in version 1.2.83.


