QuantConnect/Lean

QuantConnect/Lean

Releases4.16K
Frequency1 day
Last Release
Stars19.7K
Lean Algorithmic Trading Engine by QuantConnect (Python, C#)

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL7.5 HIGH

QuantConnect Lean versions from 2.3.0.0 to 2.4.0.1 are affected by an insecure deserialization vulnerability due to insecure configuration of TypeNameHandling property in Json.NET library.