CVE-2019-25057
Summary
In Corda before 4.1, the meaning of serialized data can be modified via an attacker-controlled CustomSerializer.
- LOW
- NETWORK
- HIGH
- UNCHANGED
- NONE
- NONE
- NONE
- NONE
References
Advisory Timeline
- Published
In Corda before 4.1, the meaning of serialized data can be modified via an attacker-controlled CustomSerializer.