mrdoc is vulnerable to Deserialization of Untrusted Data
The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
Link | Tags |
---|---|
https://huntr.dev/bounties/04fc04b3-2dc1-4cad-a090-e403cd66b5ad | issue tracking patch exploit third party advisory |
https://github.com/zmister2016/mrdoc/commit/bb49e1287700b4e7681eab544c61093821ce72f6 | third party advisory patch |