In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Improper Input Validation vulnerabilities in an interactive lesson.
Start learningUpgrade de.gurkenlabs:litiengine
to version 0.5.1 or higher.
de.gurkenlabs:litiengine is a pure 2D free java game engine. Written in plain Java 8 it provides all the infrastructure to create a 2D tile based java game, be it a platformer or a top-down adventure.
Affected versions of this package are vulnerable to Improper Input Validation. The validate
method of litiengine/src/de/gurkenlabs/litiengine/net/messages/MessageHandler.java
is not abstract. This means that a subclass of ClientMessage will accept any message (as long as it's not null) by default if the developer forgets to implement validate
.