
Apache Storm patches unsafe deserialization RCE in storm-client
Apache Storm disclosed an unsafe-deserialization RCE in `org.apache.storm:storm-client` Kerberos TGT credential handling, affecting versions before `2.8.6` when submitting topologies via Nimbus.





