Loading
A deserialization vulnerability existed when decode a malicious package.This issue affects Apache Dubbo: from 3.1.0 through 3.1.10, from 3.2.0 through 3.2.4. Users are recommended to upgrade to the latest version, which fixes the issue.
Use CWE-502, Apache vendor hub and Dubbo product page to widen CVE-2023-29234 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-46279, CVE-2021-32824 and CVE-2022-39198 for nearby disclosures in the same product family.