Kentico 13 CMS: VAPT scan issue for Deserialization Of Untrusted Data
Question
May 20, 2022
Hello guys, Our client using VAPT scan and has deteched a issue belongs to CMS OOTB code (path is: CMSModules/ImportExport/Controls/ImportWizard.ascx) Basically in the EnsureLicenseFromPackage method, they have a suggestion to use other Serializers instead of using BinaryForma...