A vulnerability classified as problematic was found in Xuxueli xxl-job version 2.4.0. This vulnerability affects the function deserialize
of the file com/xxl/job/core/util/JdkSerializeTool.java
of the component Template Handler
. The manipulation leads to injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-259480.
{ "nvd_published_at": "2024-04-06T11:15:08Z", "cwe_ids": [ "CWE-74" ], "severity": "LOW", "github_reviewed": true, "github_reviewed_at": "2024-04-08T15:42:15Z" }