...
Search for vulnerabilities resulting from the violation of this guideline on the CERT website.
Bibliography
\[[Sun 2006|AA. References#Sun 06] \] "Serialization specification" Wiki Markup
...
VOID 16. Serialization (SER) SER11-J. Do not invoke overridable methods from the readObject method