Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Edited by sciSpider Java v3.0

...

Search for vulnerabilities resulting from the violation of this rule on the CERT website.

References

Wiki Markup
\[[Sun 06|AA. Java References#Sun 06]\] ""Serialization specification""
\[[Ware 08|AA. Java References#Ware 08]\]

...

SER02-J. Limit the accessibility of readObject and writeObject methods            14. Serialization (SER)            SER30-J. Do not serialize sensitive data