CVE-2023-35815
28.04.2025, 16:15
DevExpress before 23.1.3 has a data-source protection mechanism bypass during deserialization on XML data.Enginsight
Vendor | Product | Version |
---|---|---|
devexpress | devexpress | 𝑥 < 21.2.12 |
devexpress | devexpress | 22.1.8 |
devexpress | devexpress | 22.2.4 |
devexpress | devexpress | 22.2.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References