Description
Snipe-IT before 8.1.18 allows unsafe deserialization.
Problem types
CWE-502 Deserialization of Untrusted Data
Product status
Any version before 8.1.18
References
github.com/grokability/snipe-it/releases/tag/v8.1.18
Snipe-IT before 8.1.18 allows unsafe deserialization.
CWE-502 Deserialization of Untrusted Data
github.com/grokability/snipe-it/releases/tag/v8.1.18