BinaryFormatter is being removed in .NET 9 · Issue #293 · dotnet/announcements
Ever since .NET Core 1.0, we in .NET Security have been trying to lay BinaryFormatter to rest. It’s long been known by security practitioners that any deserializer, binary or text, which allows its...