
QuantConnect/Lean
Releases4.16K
Frequency1 day
Last Release
Stars19.7K
Lean Algorithmic Trading Engine by QuantConnect (Python, C#)
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 9.8 CRITICAL | 7.5 HIGH | ||
QuantConnect Lean versions from 2.3.0.0 to 2.4.0.1 are affected by an insecure deserialization vulnerability due to insecure configuration of TypeNameHandling property in Json.NET library. | |||