References https://github.com/vulhub/vulhub/blob/master/fastjson/1.2.47-rce/README.md https://jfrog.com/blog/cve-2022-25845-analyzing-the-fastjson-auto-type-bypass-rce-vulnerability/ https://medium.com/@pa2sw0rd/deep-dive-into-fastjson-deserialization-vulnerabilities-from-principles-to-practical-defense-c3be134ec8a6 https://www.sentinelone.com/vulnerability-database/cve-2025-70974/ https://github.com/projectdiscovery/nuclei-templates/blob/main/http/vulnerabilities/fastjson/fastjson-1-2-42-rce.yaml https://nvd.nist.gov/vuln/detail/cve-2022-25845 https://github.com/jas502n/fastjson-RCE https://medium.com/@knownsec404team/fastjson-deserialization-vulnerability-history-5206714ceed1 https://github.com/vulhub/vulhub/blob/master/fastjson/1.2.24-rce/README.md https://www.huaweicloud.com/intl/en-us/notice/20220523153626935.html
Related VulnerabilitiesPoCCVE-2017-7504: JBossMQ HTTP Invocation Layer (HTTPServerILServlet) - Unauthenticated Java DeserializationPoCCVE-2015-7501: Red Hat JBoss - Insecure DeserializationPoCCVE-2019-1003030: Jenkins Pipeline Groovy Plugin <=2.63 - Insecure DeserializationPoCCVE-2025-26399: SolarWinds Web Help Desk < 12.8.7 - AjaxProxy Deserialization RCEPoCCVE-2026-58644: Microsoft SharePoint Server - WS-Federation BinaryFormatter Deserialization RCEPoCCVE-2024-42323: Apache HertzBeat < 1.6.0 - SnakeYAML Deserialization Remote Code ExecutionPoCCVE-2026-35273: Oracle PeopleSoft PeopleTools PSEMHUB - Pre-Auth Java Deserialization RCEPoCCVE-2026-46725: TYPO3 ceselector Extension - Insecure DeserializationPoCCVE-2026-33439: OpenAM <= 16.0.5 - Pre-Auth RCE via jato.clientSession DeserializationPoCvlife-fastjson-rce: Vlife FastJSON - Remote Code Execution技嘉|Performance Library - Insecure DeserializationPoCCVE-2026-27971: Qwik - Unauthenticated RCE via server$ DeserializationPoCCVE-2025-49533: Adobe Experience Manager Forms - Insecure Deserialization