INCIDENT EVIDENCE GRAPH
未修补的Fastjson漏洞正被用于攻击
这一严重的远程代码执行漏洞可在该库的默认出厂配置下无需身份验证即可被利用。该文章《未修补的Fastjson漏洞正被用于攻击》最初发表于SecurityWeek。
- 漏洞 / 利用: Unpatched Fastjson remote code execution vulnerability
- 攻击手法: Unauthenticated remote code execution against default-configured Fastjson deployments