CVE-2026-69702
- EPSS 0.31%
- Veröffentlicht 04.08.2026 17:45:32
- Zuletzt bearbeitet 05.08.2026 20:17:14
SnailJob 1.7.0 contains a denial of service vulnerability in the FuryUtil.deserialize helper that allows authenticated attackers to crash the server by supplying a crafted Zstandard-compressed payload with an inflated frame_content_size field in the ...
CVE-2025-15246
- EPSS 0.25%
- Veröffentlicht 30.12.2025 11:32:09
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was determined in aizuda snail-job up to 1.7.0 on macOS. Affected by this vulnerability is the function FurySerializer.deserialize of the component API. This manipulation of the argument argsStr causes deserialization. Remote exploita...
CVE-2025-14674
- EPSS 0.33%
- Veröffentlicht 14.12.2025 18:15:43
- Zuletzt bearbeitet 15.04.2026 00:35:42
A vulnerability was found in aizuda snail-job up to 1.6.0. Affected by this vulnerability is the function QLExpressEngine.doEval of the file snail-job-common/snail-job-common-core/src/main/java/com/aizuda/snailjob/common/core/expression/strategy/QLEx...
CVE-2025-2622
- EPSS 0.72%
- Veröffentlicht 22.03.2025 17:00:17
- Zuletzt bearbeitet 26.03.2025 18:38:53
A vulnerability was found in aizuda snail-job 1.4.0. It has been classified as critical. Affected is the function getRuntime of the file /snail-job/workflow/check-node-expression of the component Workflow-Task Management Module. The manipulation of t...