sebulba Posted December 22, 2015 Report Posted December 22, 2015 VMWare has released a security advisory VMSA-2015-0009 that address a critical deserialization vulnerability. A deserialization vulnerability involving Apache Commons-collections and a specially constructed chain of classes exists. Successful exploitation could result in remote code execution, with the permissions of the application using the Commons-collections library. source: VMSA-2015-0009 | United States 1 Quote