This whitepaper explains deserialization vulnerabilities in Java, Python, PHP, and Ruby.
You can download it from the following link: https://packetstormsecurity.com/files/download/147906/deserialization-vulnerability.pdf
Source: https://packetstormsecurity.com/files/147906/Deserialization-Vulnerabilities.html

