melisplatform/melis-front
MelisFront is the engine that displays website hosted on Melis Platform. It deals with showing pages, plugins, URL rewritting, search optimization and SEO, etc.
Activity
- Latest release
- 3w ago
- Total releases
- 67
- Cadence
- ~42 days
- Last 12 months
- 10
Reach
- Stars
- 2
Details
- License
- unknown
- First release
- May 16, 2017
| Version | Released | |
|---|---|---|
v6.0.3
patch
| ||
v6.0.2
patch
| ||
v6.0.1
patch
| ||
v6.0.0
major
| ||
v5.3.10
patch
| ||
v5.3.9
patch
| ||
v5.3.8
patch
| ||
v5.3.7
patch
| ||
v5.3.6
patch
| ||
v5.3.5
patch
| ||
v5.3.4
patch
| ||
v5.3.3
patch
| ||
v5.3.2
patch
| ||
v5.3.1
patch
| ||
v5.3.0
minor
| ||
v5.2.0
minor
| ||
v5.1.1
patch
| ||
v5.1.0
minor
| ||
v5.0.3
patch
| ||
v5.0.2
patch
| ||
v5.0.1
patch
| ||
v5.0.0
major
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.1.2
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.1.1
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.1.0
minor
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.0.7
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.0.6
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.0.5
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.0.4
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.0.3
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.0.2
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.0.1
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v4.0.0
major
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.9
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.8
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.7
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.6
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.5
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.4
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.3
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.2
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.1
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.2.0
minor
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.1.6
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.1.5
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.1.4
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.1.3
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.1.2
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.1.1
patch
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev | ||
v3.1.0
minor
1 CVE
CVE-2022-39298
GHSA-h479-2mv4-5c26
Oct 11, 2022
melisplatform/melis-front vulnerable to deserialization of untrusted data
7.7
/ 10
High
Network
High
None
None
Unchanged
High
High
Low
ImpactAttackers can deserialize arbitrary data on affected versions of Users should immediately upgrade to PatchesThis issue was addressed by restricting allowed classes when deserializing user-controlled data. References
For more informationIf you have any questions or comments about this advisory, you can contact:
Affected versions
v2.1
v2.1.1
v2.2.0
v2.2.1
v2.3.0
v2.4.0
v2.5.0
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
+ 35 more Show less
v3.0.5
v3.0.6
v3.0.7
v3.0.8
v3.0.9
v3.1.0
v3.1.1
v3.1.2
v3.1.3
v3.1.4
v3.1.5
v3.1.6
v3.2.0
v3.2.1
v3.2.2
v3.2.3
v3.2.4
v3.2.5
v3.2.6
v3.2.7
v3.2.8
v3.2.9
v4.0.0
v4.0.1
v4.0.2
v4.0.3
v4.0.4
v4.0.5
v4.0.6
v4.0.7
v4.0.8
v4.1.0
v4.1.1
v4.1.2
v5.0.0
Fixed in
5.0.1
References Updated Nov 08, 2023 · Source: OSV.dev |