#insecure-deserialization

[ follow ]
Information security
fromThe Hacker News
1 week ago

Researchers Warn of Sitecore Exploit Chain Linking Cache Poisoning and Remote Code Execution

Sitecore Experience Platform vulnerabilities enable HTML cache poisoning, insecure deserialization RCE, and ItemService information disclosure that can yield remote code execution and unauthorized access when chained.
[ Load more ]