Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Manmeet Singh

#24973of 53,632
9.8Total CVSS
Vulnerabilities · 1
PT-2020-20141
9.8
2020-02-19
Jyaml · Jyaml · CVE-2020-8441
**Name of the Vulnerable Software and Affected Versions** JYaml versions prior to 1.4 **Description** The issue allows remote code execution during deserialization of a malicious payload through the `load()` function. It is noted that JYaml is a discontinued product. **Recommendations** For JYaml versions prior to 1.4, as the product is discontinued, there is no information about a newer version that contains a fix for this issue. Consider disabling the `load()` function to minimize the risk of exploitation.