Spring Boot

Critical Fastjson flaw actively exploited with no patch

A critical remote code execution vulnerability in Alibaba's Fastjson library is under active exploitation, with no fix available for the affected 1.x branch and attackers already hitting production systems across the United States.