nGrinder before 3.5.9 uses old version of SnakeYAML, which could allow remote attacker to execute arbitrary code via unsafe deserialization.
CVSS

No CVSS.

History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: naver

Published: 2024-03-07T04:49:37.921Z

Updated: 2024-03-07T05:44:05.045Z

Reserved: 2024-03-07T02:38:58.221Z


Link: CVE-2024-28212

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-03-07T05:15:54.603

Modified: 2024-03-07T13:52:27.110


Link: CVE-2024-28212

JSON object: View

cve-icon Redhat Information

No data.

CWE