A deserialization flaw was found in Apache Chainsaw versions prior to 2.1.0 which could lead to malicious code execution.
2021-06-16T08:15:06.577
2024-11-21T05:40:46.017
Modified
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | apache | chainsaw | < 2.1.0 | Yes |
| Application | apache | log4j | < 2.0 | Yes |
| Application | qos | reload4j | < 1.2.18.1 | Yes |