CVE-2020-28923 – An issue was discovered in Play Framework 2.8.0 through 2.8.4. Carefully crafted JSON payl …

Vuln ID: CVE-2020-28923

Published:  2020-12-03  17:15:13Z

Description: An issue was discovered in Play Framework 2.8.0 through 2.8.4. Carefully crafted JSON payloads sent as a form field lead to Data Amplification. This affects users migrating from a Play version prior to 2.8.0 that used the Play Java API to serialize classes with protected or private fields to JSON.

Source: NVD.NIST.GOV

 


Date:

Categorie(s):

Tag(s):