CVE-2017-20285

CVE-2017-20285 published: YAML versions before 1.30 for Perl allow a loaded document to trigger the DESTROY method of arbitrary classes. A perl/hash:Class tag blesses a hash into the class it names. The document supplies the object's fields, and Perl calls DESTROY when it goes out ...

View full NVD advisory → ← Back to CVE watch