Insecure Deserialization
Insecure deserialization is a vulnerability which occurs when user-controllable untrusted data is deserialized by a website without sanitize.Vulnerability cause to gain priviliges may even remote code execution.
- https://crashtest-security.com/insecure-deserialization/#:~:text=Insecure%20deserialization%20is%20a%20well,Path%20Traversal%2C%20and%20Authentication%20Bypasses.
- https://hdivsecurity.com/owasp-insecure-deserialization
- https://infosecwriteups.com/understanding-identifying-insecure-deserialization-vulnerabilities-f7fac5414bb3

