Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-25647

The package com.google.code.gson:gson before 2.8.9 are vulnerable to Deserialization of Untrusted Data via the writeReplace() method in internal classes, which may lead to DoS attacks.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.022
EPSS Ranking 83.5%
CVSS Severity
CVSS v3 Score 7.7
CVSS v2 Score 5.0
References
Products affected by CVE-2022-25647


Contact Us

Shodan ® - All rights reserved