GitHub Security Lab
2 credited records · 0 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
57Plan | CVE-2021-30180Proof of concept | Apache Dubbo RCE on customers via Condition route poisoning (Unsafe YAML unmarshaling)apache · dubbo · CWE-444 | Critical9.8 | — | 60.3% | Jun 1, 2021 |
40Plan | CVE-2021-30179No exploit | Apache Dubbo Pre-auth RCE via Java deserialization in the Generic filterapache · dubbo · CWE-502 | Critical9.8 | — | 4.1% | Jun 1, 2021 |
- CVE-2021-3018057Plan
Apache Dubbo RCE on customers via Condition route poisoning (Unsafe YAML unmarshaling)
CriticalCVSS 9.8Proof of conceptEPSS 60%apache · dubboJun 1, 2021
- CVE-2021-3017940Plan
Apache Dubbo Pre-auth RCE via Java deserialization in the Generic filter
CriticalCVSS 9.8No exploitEPSS 4%apache · dubboJun 1, 2021