ef4efbf Disallow deserialization of <ex:serializable> tags by default

Authored and Committed by msimacek 5 years ago
    Disallow deserialization of <ex:serializable> tags by default
    
    - Resolves CVE-2016-5003
    
        
file modified
+7 -1