top | item 30853110

(no title)

chockchocschoir | 3 years ago

Java doesn't make exploitable RCEs more or less possible than any other programming language. Or do you have something to back this up beyond the common "Java be bad" trope?

discuss

order

formerly_proven|3 years ago

Java certainly has a long history of RCEs caused by Java Serialization.

chockchocschoir|3 years ago

Comparing Java Serialization with $language Serialization, and the usage of both of the languages, does Java have more RCEs per line written than $language? Or is it just a function of its popularity?