Vulnerability record · CVE-2021-21349 · published 23 March 2021
CVE-2021-21349: XStream deserialization flaw enables SSRF against internal resources
NNetapp · Oncommand Insight
XStream, a Java library for serializing objects to and from XML, before version 1.4.16 allows a remote attacker to request data from internal resources that are not publicly available by manipulating the processed input stream. It is a deserialization of untrusted data issue that also manifests as server-side request forgery, so any application unmarshalling untrusted XML with XStream's default blacklist is exposed.
Description
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to request data from internal resources that are not publicly available only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security framework with a whitelist limited to the minimal required types. If you rely on XStream's default blacklist of the Security Framework, you will have to use at least version 1.4.16.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Automated analysis
high priorityCVSS 8.6 with network reachability, no authentication or user interaction, and a very high EPSS percentile, though impact is limited to confidentiality and whitelist-configured deployments are unaffected.
What it is
XStream, a Java library for serializing objects to and from XML, before version 1.4.16 allows a remote attacker to request data from internal resources that are not publicly available by manipulating the processed input stream. It is a deserialization of untrusted data issue that also manifests as server-side request forgery, so any application unmarshalling untrusted XML with XStream's default blacklist is exposed.
Impact
An attacker can cause the application to reach internal-only resources and read data that should not be publicly reachable, with high confidentiality impact but no integrity or availability impact.
Attack surface
Reached over the network by supplying crafted XML to an XStream deserialization endpoint; the CVSS vector shows no privileges and no user interaction required. Systems that configured XStream's security framework with a minimal whitelist are not affected.
Exploitation
Not listed in CISA KEV and no ransomware usage is documented, but EPSS is 0.46826 (98.8th percentile) and the vendor advisory reference is tagged Exploit, indicating public exploit material exists.
What to do
- Upgrade XStream to version 1.4.16 or later, which is the minimum required when relying on the default blacklist.
- Replace the default blacklist with a security framework whitelist limited to the minimal required types.
- Update dependent products that bundle XStream, including Apache ActiveMQ, Apache JMeter, NetApp OnCommand Insight, Oracle Java SE/GraalVM and Oracle banking and middleware products, per their vendor advisories.
- Apply distribution patches for Debian and Fedora packages that ship XStream.
- Restrict outbound network access from application servers so deserialization cannot reach internal-only services.
Detection
- Monitor application logs and network flows for outbound requests from XStream-based services to internal addresses or unexpected hosts.
- Alert on XML payloads containing XStream class and field elements that reference network or resource-loading types.
- Inventory deployed XStream versions and flag any instance below 1.4.16, including those embedded in ActiveMQ, JMeter and vendor products.
- Watch for repeated deserialization errors or unusual XML input sizes on endpoints that unmarshal XStream data.
This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.
Affected products
17 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
Track CVE-2021-21349 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2021-21349), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.