Apache · Apache Seata · CVE-2024-47552
**Name of the Vulnerable Software and Affected Versions**
Apache Seata (incubating) versions 2.0.0 through 2.1.x
**Description**
The issue is related to the deserialization of untrusted data, which can lead to remote code execution. This issue affects Apache Seata (incubating) from version 2.0.0 before 2.2.0. Users are recommended to upgrade to version 2.2.0 to fix the issue.
**Recommendations**
For Apache Seata (incubating) versions 2.0.0 through 2.1.x, upgrade to version 2.2.0 to resolve the issue.