An issue in WuKongOpenSource WukongCRM v.72crm9.0.120191202 allows a remote attacker to execute arbitrary code via the parseObject() function in the fastjson component.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-23052.json"