← Back to CVE List

CVE-2020-10721

Published: 2020-10-22T20:15Z
Last Modified: 2024-11-21T04:55Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A flaw was found in the fabric8-maven-plugin 4.0.0 and later. When using a wildfly-swarm or thorntail custom configuration, a malicious YAML configuration file on the local machine executing the maven plug-in could allow for deserialization of untrusted data resulting in arbitrary code execution. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt