Vulnerabilities (CVE)

Filtered by vendor Quantconnect Subscribe
Filtered by product Lean
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-20136 1 Quantconnect 1 Lean 2024-02-28 7.5 HIGH 9.8 CRITICAL
QuantConnect Lean versions from 2.3.0.0 to 2.4.0.1 are affected by an insecure deserialization vulnerability due to insecure configuration of TypeNameHandling property in Json.NET library.