Vulnerabilities (CVE)

Filtered by vendor Google Subscribe
Filtered by product Gson
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-25647 2 Debian, Google 2 Debian Linux, Gson 2022-07-25 5.0 MEDIUM 7.5 HIGH
The package com.google.code.gson:gson before 2.8.9 are vulnerable to Deserialization of Untrusted Data via the writeReplace() method in internal classes, which may lead to DoS attacks.