Why Every Spring Boot Fat‑JAR Is Vulnerable to the New Fastjson RCE Flaw
A newly discovered gadget‑free RCE in Fastjson 1.2.83 targets Spring Boot executable fat‑JARs, has already been seen in the wild, and can be mitigated by enabling SafeMode, tightening outbound HTTP, and migrating to Fastjson2.
