cve/2019/CVE-2019-9710.md
2024-05-26 14:27:05 +02:00

750 B

CVE-2019-9710

Description

An issue was discovered in webargs before 5.1.3, as used with marshmallow and other products. JSON parsing uses a short-lived cache to store the parsed JSON body. This cache is not thread-safe, meaning that incorrect JSON payloads could have been parsed for concurrent requests.

POC

Reference

No PoCs from references.

Github