{ "id": "CVE-2023-39106", "sourceIdentifier": "cve@mitre.org", "published": "2023-08-21T17:15:48.587", "lastModified": "2023-08-21T17:15:48.587", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "An issue in Nacos Group Nacos Spring Project v.1.1.1 and before allows a remote attacker to execute arbitrary code via the SnakeYamls Constructor() component." } ], "metrics": {}, "references": [ { "url": "https://github.com/nacos-group/nacos-spring-project/issues/314", "source": "cve@mitre.org" } ] }