Skip to content

Commit fb1e707

Browse files
owen-mcDilan Bhalla
authored andcommitted
Update SnakeYaml reference to note that it is outdated
1 parent 0258108 commit fb1e707

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

java/ql/src/Security/CWE/CWE-502/UnsafeDeserialization.qhelp

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -121,7 +121,7 @@ Alvaro Muñoz & Christian Schneider, RSAConference 2016:
121121
</li>
122122
<li>
123123
SnakeYaml documentation on deserialization:
124-
<a href="https://bitbucket.org/snakeyaml/snakeyaml/wiki/Documentation#markdown-header-loading-yaml">SnakeYaml deserialization</a>.
124+
<a href="https://bitbucket.org/snakeyaml/snakeyaml/wiki/Documentation#markdown-header-loading-yaml">SnakeYaml deserialization</a> (not updated for new behaviour in version 2.0).
125125
</li>
126126
<li>
127127
Hessian deserialization and related gadget chains:

0 commit comments

Comments
 (0)