<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Insecure Deserialization (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/deserialization.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/deserialization-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Insecure Deserialization (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:33 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-24237 – NVIDIA NVTabular contains a vulnerability where an attacker could cause improper...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24237</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24237</guid>
    <pubDate>Tue, 02 Jun 2026 17:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24237</strong></p>
  <p>NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24237">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24221 – NVIDIA NVTabular contains a vulnerability where an attacker could cause improper...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24221</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24221</guid>
    <pubDate>Tue, 02 Jun 2026 17:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24221</strong></p>
  <p>NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, data tampering and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24221">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39555 – Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Ob...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39555</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39555</guid>
    <pubDate>Tue, 02 Jun 2026 14:16:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39555</strong></p>
  <p>Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection.  This issue affects Askka: from n/a through 1.3.1.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39555">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39551 – Deserialization of Untrusted Data vulnerability in Elated-Themes Töbel allows Ob...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39551</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39551</guid>
    <pubDate>Tue, 02 Jun 2026 12:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39551</strong></p>
  <p>Deserialization of Untrusted Data vulnerability in Elated-Themes Töbel allows Object Injection.  This issue affects Töbel: from n/a through 1.8.1.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39551">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39550 – Deserialization of Untrusted Data vulnerability in Elated-Themes Aperitif allows...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39550</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39550</guid>
    <pubDate>Tue, 02 Jun 2026 12:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39550</strong></p>
  <p>Deserialization of Untrusted Data vulnerability in Elated-Themes Aperitif allows Object Injection.  This issue affects Aperitif: from n/a through 1.6.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39550">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-9330 – IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9330</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9330</guid>
    <pubDate>Mon, 01 Jun 2026 19:16:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-9330</strong></p>
  <p>IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user-supplied data during deserialization using the SAML Web Single Sign-On component. This could result in remote code execution via a crafted HTTP request when combined with a suitable gadget chain.</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9330">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-9319 – IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to potential remote ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9319</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9319</guid>
    <pubDate>Mon, 01 Jun 2026 19:16:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-9319</strong></p>
  <p>IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to potential remote code execution due to deserialization of untrusted data via JAX-WS endpoints with WS-Security.</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9319">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-47294 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47294</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47294</guid>
    <pubDate>Mon, 01 Jun 2026 19:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-47294</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47294">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-38950 – An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-38950</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-38950</guid>
    <pubDate>Mon, 01 Jun 2026 17:16:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-38950</strong></p>
  <p>An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary code via crafted model checkpoint files. The affected components load model files from session directories using torch.load() with unrestricted deserialization.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-38950">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-7858 – A Deserialization of Untrusted Data vulnerability affecting Teamwork Cloud from ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7858</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7858</guid>
    <pubDate>Mon, 01 Jun 2026 09:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-7858</strong></p>
  <p>A Deserialization of Untrusted Data vulnerability affecting Teamwork Cloud from No Magic Release 2022x through No Magic Release 2026x and Magic Collaboration Studio from CATIA Magic Release 2022x through CATIA Magic Release 2026x could lead to an unauthenticated remote code execution.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7858">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-10042 – manga-image-translator contains a remote code execution vulnerability in the sha...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-10042</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-10042</guid>
    <pubDate>Fri, 29 May 2026 15:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-10042</strong></p>
  <p>manga-image-translator contains a remote code execution vulnerability in the shared API server mode due to unsafe deserialization of untrusted pickle data in the share.py module, where the /execute/{method_name} and /simple_execute/{method_name} endpoints deserialize attacker-controlled HTTP request bodies using pickle.loads(). A remote attacker can supply a crafted pickle payload to these endpoi…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-10042">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-11993 – The WooCommerce Infinite Scroll and Ajax Pagination plugin for WordPress is vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-11993</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-11993</guid>
    <pubDate>Fri, 29 May 2026 07:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-11993</strong></p>
  <p>The WooCommerce Infinite Scroll and Ajax Pagination plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.8 via the 'settings' parameter in the 'import_settings' function. This is due to deserialization of untrusted data supplied via the import configuration feature without capability checks. This makes it possible for authenticated attackers, with Sub…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-11993">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6455 – The WP Contact Form 7 DB Handler plugin for WordPress is vulnerable to Cross-Sit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6455</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6455</guid>
    <pubDate>Thu, 28 May 2026 08:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6455</strong></p>
  <p>The WP Contact Form 7 DB Handler plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to Arbitrary File Deletion via SQL Injection and PHP Object Injection in versions up to and including 3.0. This is due to a missing nonce verification in the process_bulk_action() function, the nonce check is only executed when _wpnonce is present in the POST body, allowing it to be trivially…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6455">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44843 – LangChain is a framework for building agents and LLM-powered applications. Prior...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44843</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44843</guid>
    <pubDate>Tue, 26 May 2026 21:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44843</strong></p>
  <p>LangChain is a framework for building agents and LLM-powered applications. Prior to 0.3.85 and 1.3.3, LangChain contains older runtime code paths that deserialize run inputs, run outputs, or other application-controlled payloads using overly broad object allowlists. These paths may call load() with allowed_objects="all". This does not enable arbitrary Python object deserialization, but it does al…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44843">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24162 – NVIDIA Transformers4Rec for Linux contains a vulnerability where an attacker cou...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24162</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24162</guid>
    <pubDate>Tue, 26 May 2026 17:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24162</strong></p>
  <p>NVIDIA Transformers4Rec for Linux contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24162">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4372 – A critical remote code execution vulnerability exists in all versions of the Hug...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4372</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4372</guid>
    <pubDate>Sun, 24 May 2026 14:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4372</strong></p>
  <p>A critical remote code execution vulnerability exists in all versions of the HuggingFace transformers library prior to version 5.3.0. The vulnerability allows an attacker to craft a malicious `config.json` file containing the `_attn_implementation_internal` field set to an attacker-controlled HuggingFace Hub repository ID. When a victim loads this model using the standard `AutoModelForCausalLM.fr…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-1066</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4372">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45659 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45659</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45659</guid>
    <pubDate>Fri, 22 May 2026 23:16:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45659</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45659">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41104 – Deserialization of untrusted data in Microsoft Planetary Computer Pro allows an ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41104</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41104</guid>
    <pubDate>Fri, 22 May 2026 23:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41104</strong></p>
  <p>Deserialization of untrusted data in Microsoft Planetary Computer Pro allows an unauthorized attacker to disclose information over a network.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41104">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-9291 – Insecure deserialization in the job results processing component in Amazon Brake...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9291</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9291</guid>
    <pubDate>Fri, 22 May 2026 19:17:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-9291</strong></p>
  <p>Insecure deserialization in the job results processing component in Amazon Braket SDK before 1.117.0 might allow a remote authenticated user with S3 write access to the job output bucket to achieve arbitrary code execution on any machine that processes job results.    We recommend you upgrade to amazon-braket-sdk version 1.117.0 or later.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9291">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8135 – Concrete CMS 9.5.0 and below is vulnerable to Remote Code Execution  due to inse...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8135</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8135</guid>
    <pubDate>Thu, 21 May 2026 21:16:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8135</strong></p>
  <p>Concrete CMS 9.5.0 and below is vulnerable to Remote Code Execution  due to insecure deserialization occurring in the ExpressEntryList block controller. An rogue administrator with privileges to add blocks to an area can bypass the intended protection mechanism (_fromCIF === true), which normally restricts malicious inputs over form POST requests, by leveraging the REST API functionality. Because…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8135">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-48207 – Deserialization of untrusted data in Apache Fory PyFory. PyFory's ReduceSerializ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-48207</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-48207</guid>
    <pubDate>Thu, 21 May 2026 17:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-48207</strong></p>
  <p>Deserialization of untrusted data in Apache Fory PyFory. PyFory's ReduceSerializer could bypass documented DeserializationPolicy validation hooks during reduce-state restoration and global-name resolution. An application is vulnerable if it deserializes attacker-controlled data using PyFory Python-native mode with strict mode disabled and relies on DeserializationPolicy to restrict unsafe classes…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48207">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24216 – NVIDIA BioNemo for Linux contains a vulnerability where a user could cause a des...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24216</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24216</guid>
    <pubDate>Wed, 20 May 2026 20:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24216</strong></p>
  <p>NVIDIA BioNemo for Linux contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24216">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-7637 – The Boost plugin for WordPress is vulnerable to PHP Object Injection in versions...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7637</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7637</guid>
    <pubDate>Wed, 20 May 2026 04:16:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-7637</strong></p>
  <p>The Boost plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.0.3 via deserialization of untrusted input in the STYXKEY-BOOST_USER_LOCATION cookie. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software, which means this vulnerability has no impact unless another plugin or the…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7637">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24163 – NVIDIA TRT-LLM for any platform contains a vulnerability in RPC testing, where a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24163</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24163</guid>
    <pubDate>Wed, 20 May 2026 04:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24163</strong></p>
  <p>NVIDIA TRT-LLM for any platform contains a vulnerability in RPC testing, where an attacker could  cause an unsafe deserialization. A successful exploit of this vulnerability might lead to code execution, denial of service, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24163">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33255 – NVIDIA TRT-LLM for any platform contains a vulnerability in MPI server, where an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33255</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33255</guid>
    <pubDate>Wed, 20 May 2026 04:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33255</strong></p>
  <p>NVIDIA TRT-LLM for any platform contains a vulnerability in MPI server, where an attacker could cause an unsafe deserialization. A successful exploit of this vulnerability might lead to code execution, denial of service, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33255">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31072 – The JSONSerializer and CBORSerializer in APScheduler (all versions including 3.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31072</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31072</guid>
    <pubDate>Tue, 19 May 2026 16:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31072</strong></p>
  <p>The JSONSerializer and CBORSerializer in APScheduler (all versions including 3.10.x and 4.0.0a5) are vulnerable to Remote Code Execution (RCE) via Insecure Deserialization. The unmarshal_object function allows for arbitrary class instantiation and state injection by dynamically importing modules and calling __setstate__ on any class available in the Python environment. An attacker can exploit thi…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31072">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-43633 – HestiaCP versions 1.9.0 through 1.9.4 contain a deserialization vulnerability in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-43633</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-43633</guid>
    <pubDate>Tue, 19 May 2026 14:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-43633</strong></p>
  <p>HestiaCP versions 1.9.0 through 1.9.4 contain a deserialization vulnerability in the web terminal component caused by a session format mismatch between PHP and Node.js that allows unauthenticated remote attackers to achieve root-level code execution. Attackers can inject crafted data into HTTP headers that are processed by the PHP session handler but incorrectly deserialized by the Node.js web te…</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-43633">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33233 – AutoGPT is a workflow automation platform for creating, deploying, and managing ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33233</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33233</guid>
    <pubDate>Tue, 19 May 2026 02:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33233</strong></p>
  <p>AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. In versions 0.6.34 through 0.6.51, the backend deserializes Redis cache bytes using pickle.loads without integrity/authenticity checks. The write path serializes values with pickle.dumps(...) into Redis and the read path blindly invokes pickle.loads(...) on bytes with no HMAC…</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33233">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8751 – A security flaw has been discovered in h2oai h2o-3 up to 7402. This affects the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8751</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8751</guid>
    <pubDate>Sun, 17 May 2026 12:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8751</strong></p>
  <p>A security flaw has been discovered in h2oai h2o-3 up to 7402. This affects the function importBinaryModel of the file h2o-core/src/main/java/hex/Model.java of the component JAR Handler. Performing a manipulation results in deserialization. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early abo…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8751">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-47952 – python jsonpickle 2.0.0 contains a remote code execution vulnerability that allo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-47952</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-47952</guid>
    <pubDate>Sat, 16 May 2026 16:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-47952</strong></p>
  <p>python jsonpickle 2.0.0 contains a remote code execution vulnerability that allows attackers to execute arbitrary Python commands by deserializing malicious JSON payloads containing py/repr objects. Attackers can craft JSON strings with py/repr directives that invoke the eval function during deserialization to execute arbitrary code.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-47952">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34659 – Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by a Deser...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34659</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34659</guid>
    <pubDate>Tue, 12 May 2026 19:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34659</strong></p>
  <p>Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact wit…</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34659">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40368 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40368</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40368</guid>
    <pubDate>Tue, 12 May 2026 18:17:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40368</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40368">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40365 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40365</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40365</guid>
    <pubDate>Tue, 12 May 2026 18:17:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40365</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-1220</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40365">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40357 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40357</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40357</guid>
    <pubDate>Tue, 12 May 2026 18:17:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40357</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40357">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35439 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35439</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35439</guid>
    <pubDate>Tue, 12 May 2026 18:17:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35439</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35439">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33112 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33112</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33112</guid>
    <pubDate>Tue, 12 May 2026 18:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33112</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33112">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33110 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33110</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33110</guid>
    <pubDate>Tue, 12 May 2026 18:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33110</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33110">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31239 – The mamba language model framework thru 2.2.6 is vulnerable to insecure deserial...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31239</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31239</guid>
    <pubDate>Tue, 12 May 2026 18:16:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31239</strong></p>
  <p>The mamba language model framework thru 2.2.6 is vulnerable to insecure deserialization (CWE-502) when loading pre-trained models from HuggingFace Hub. The MambaLMHeadModel.from_pretrained() method uses torch.load() to load the pytorch_model.bin weight file without enabling the security-restrictive weights_only=True parameter. This allows the deserialization of arbitrary Python objects via the pi…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31239">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31238 – The Ludwig framework thru 0.10.4 is vulnerable to insecure deserialization (CWE-...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31238</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31238</guid>
    <pubDate>Tue, 12 May 2026 18:16:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31238</strong></p>
  <p>The Ludwig framework thru 0.10.4 is vulnerable to insecure deserialization (CWE-502) in its model serving component. When starting a model server with the ludwig serve command, the framework loads model weight files using torch.load() without enabling the security-restrictive weights_only=True parameter. This default behavior allows the deserialization of arbitrary Python objects via the pickle m…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31238">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31237 – The Ludwig framework thru 0.10.4 is vulnerable to insecure deserialization (CWE-...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31237</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31237</guid>
    <pubDate>Tue, 12 May 2026 18:16:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31237</strong></p>
  <p>The Ludwig framework thru 0.10.4 is vulnerable to insecure deserialization (CWE-502) through its predict() method. When a user provides a dataset file path to the predict() method, the framework automatically determines the file format. If the file is a pickle (.pkl) file, it is loaded using pandas.read_pickle() without any validation or security restrictions. This allows the deserialization of a…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31237">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31235 – The imgaug library thru 0.4.0 contains an insecure deserialization vulnerability...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31235</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31235</guid>
    <pubDate>Tue, 12 May 2026 18:16:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31235</strong></p>
  <p>The imgaug library thru 0.4.0 contains an insecure deserialization vulnerability in its BackgroundAugmenter class within the multicore.py module. The class uses Python's pickle module to deserialize data received via a multiprocessing queue in the _augment_images_worker() method without any safety checks. An attacker who can influence the data placed into this queue (e.g., through social engineer…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31235">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31234 – Horovod thru 0.28.1 contains an insecure deserialization vulnerability (CWE-502)...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31234</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31234</guid>
    <pubDate>Tue, 12 May 2026 18:16:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31234</strong></p>
  <p>Horovod thru 0.28.1 contains an insecure deserialization vulnerability (CWE-502) in its KVStore HTTP server component. The KVStore server, used for distributed task coordination, lacks authentication and authorization controls, allowing any remote attacker to write arbitrary data via HTTP PUT requests. When a Horovod worker reads data from the KVStore (via HTTP GET), it deserializes the data usin…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31234">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31232 – The CosyVoice project thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31232</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31232</guid>
    <pubDate>Tue, 12 May 2026 18:16:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31232</strong></p>
  <p>The CosyVoice project thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025-30-21) contains an insecure deserialization vulnerability (CWE-502) in its model loading process. When loading model files (.pt) from a user-specified directory (via the --model_dir argument), the code uses torch.load() without the security-restrictive weights_only=True parameter. This allows the deserialization of a…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31232">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31229 – The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains an insecure deseri...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31229</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31229</guid>
    <pubDate>Tue, 12 May 2026 18:16:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31229</strong></p>
  <p>The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains an insecure deserialization vulnerability (CWE-502) in its Kubeflow component's model loading functionality. When loading model weights from a file (e.g., model.pt) during robustness evaluation, the code uses torch.load() without the security-restrictive weights_only=True parameter. This allows the deserialization of arbitrary Python o…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31229">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31224 – The snorkel library thru v0.10.0 contains an insecure deserialization vulnerabil...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31224</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31224</guid>
    <pubDate>Tue, 12 May 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31224</strong></p>
  <p>The snorkel library thru v0.10.0 contains an insecure deserialization vulnerability (CWE-502) in the MultitaskClassifier.load() method of the MultitaskClassifier class. The method loads model weight files using torch.load() without enabling the security-restrictive weights_only=True parameter. This default behavior allows the deserialization of arbitrary Python objects via the Pickle module. A re…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31224">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31223 – The snorkel library thru v0.10.0 contains a critical insecure deserialization vu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31223</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31223</guid>
    <pubDate>Tue, 12 May 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31223</strong></p>
  <p>The snorkel library thru v0.10.0 contains a critical insecure deserialization vulnerability (CWE-502) in the BaseLabeler.load() method of the BaseLabeler class. The method loads serialized labeler models using the unsafe pickle.load() function on user-supplied file paths without any validation or security controls. Python's pickle module is inherently dangerous for deserializing untrusted data, a…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31223">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31222 – The snorkel library thru v0.10.0 contains an insecure deserialization vulnerabil...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31222</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31222</guid>
    <pubDate>Tue, 12 May 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31222</strong></p>
  <p>The snorkel library thru v0.10.0 contains an insecure deserialization vulnerability (CWE-502) in the Trainer.load() method of the Trainer class. The method loads model checkpoint files using torch.load() without enabling the security-restrictive weights_only=True parameter. This default behavior allows the deserialization of arbitrary Python objects via the Pickle module. A remote attacker can ex…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31222">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31221 – PyTorch-Lightning versions 2.6.0 and earlier contain an insecure deserialization...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31221</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31221</guid>
    <pubDate>Tue, 12 May 2026 16:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31221</strong></p>
  <p>PyTorch-Lightning versions 2.6.0 and earlier contain an insecure deserialization vulnerability (CWE-502) in the checkpoint loading mechanism. The LightningModule.load_from_checkpoint() method, which is commonly used to load saved model states, internally calls torch.load() without setting the security-restrictive weights_only=True parameter. This default behavior allows the deserialization of arb…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31221">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31219 – The _load_model() function in the neural_magic_training.py script of the optimat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31219</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31219</guid>
    <pubDate>Tue, 12 May 2026 16:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31219</strong></p>
  <p>The _load_model() function in the neural_magic_training.py script of the optimate project in commit a6d302f912b481c94370811af6b11402f51d377f (2024-07-21) is vulnerable to insecure deserialization (CWE-502). When a user provides a single model file path (e.g., .pt or .pth) via the --model command-line argument, the function loads the file using torch.load() without enabling the weights_only=True s…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31219">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31218 – The _load_model() function in the neural_magic_training.py script of the optimat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31218</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31218</guid>
    <pubDate>Tue, 12 May 2026 16:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31218</strong></p>
  <p>The _load_model() function in the neural_magic_training.py script of the optimate project in commit a6d302f912b481c94370811af6b11402f51d377f (2024-07-21) is vulnerable to insecure deserialization (CWE-502). When loading a model state dictionary from a state_dict.pt file via torch.load(), the function does not enable the weights_only=True security parameter. This allows the deserialization of arbi…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31218">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31214 – The torch-checkpoint-shrink.py script in the ml-engineering project in commit 00...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31214</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31214</guid>
    <pubDate>Tue, 12 May 2026 16:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31214</strong></p>
  <p>The torch-checkpoint-shrink.py script in the ml-engineering project in commit 0099885db36a8f06556efe1faf552518852cb1e0 (2025-20-27) contains an insecure deserialization vulnerability (CWE-502). The script uses torch.load() to process PyTorch checkpoint files (.pt) without enabling the security-restrictive weights_only=True parameter. This oversight allows the deserialization of arbitrary Python o…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31214">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31253 – The flash-attention training framework thru commit e724e2588cbe754beb97cf7c011b5...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31253</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31253</guid>
    <pubDate>Mon, 11 May 2026 17:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31253</strong></p>
  <p>The flash-attention training framework thru commit e724e2588cbe754beb97cf7c011b5e7e34119e62 (2025-13-04) contains an insecure deserialization vulnerability (CWE-502) in its checkpoint loading mechanism. The load_checkpoint() function in checkpoint.py and the checkpoint loading code in eval.py use torch.load() without enabling the security-restrictive weights_only=True parameter. This allows the d…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31253">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31251 – CosyVoice thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025-30-21) cont...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31251</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31251</guid>
    <pubDate>Mon, 11 May 2026 17:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31251</strong></p>
  <p>CosyVoice thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025-30-21) contains an insecure deserialization vulnerability (CWE-502) in its gRPC server component. When the server starts, it loads the speech synthesis model from a user-specified directory using torch.load() without enabling the weights_only=True security parameter. This allows the deserialization of arbitrary Python objects vi…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31251">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31250 – CosyVoice thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025-30-21) cont...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31250</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31250</guid>
    <pubDate>Mon, 11 May 2026 17:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31250</strong></p>
  <p>CosyVoice thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025-30-21) contains an insecure deserialization vulnerability (CWE-502) in its average_model.py model averaging tool. The script loads PyTorch checkpoint files (epoch_*.pt) for model averaging using torch.load() without enabling the weights_only=True security parameter. This allows the deserialization of arbitrary Python objects via…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31250">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31249 – CosyVoice thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025-30-21) cont...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31249</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31249</guid>
    <pubDate>Mon, 11 May 2026 17:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31249</strong></p>
  <p>CosyVoice thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025-30-21) contains an insecure deserialization vulnerability (CWE-502) in its make_parquet_list.py data processing tool. The script loads PyTorch .pt files (utterance embeddings, speaker embeddings, speech tokens) using torch.load() without enabling the weights_only=True security parameter. This allows the deserialization of arbitr…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31249">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7818 – Deserialization of untrusted data (CWE-502) in pgAdmin 4 FileBackedSessionManage...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7818</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7818</guid>
    <pubDate>Mon, 11 May 2026 16:17:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7818</strong></p>
  <p>Deserialization of untrusted data (CWE-502) in pgAdmin 4 FileBackedSessionManager.  The session manager performed unsafe deserialization of session-file contents (using Python's standard object-serialization module) before performing any HMAC integrity check. Any file dropped into the sessions directory was deserialized unconditionally. An authenticated user with write access to the sessions dire…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7818">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5127 – The User Frontend: AI Powered Frontend Posting, User Directory, Profile, Members...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5127</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5127</guid>
    <pubDate>Fri, 08 May 2026 09:16:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5127</strong></p>
  <p>The User Frontend: AI Powered Frontend Posting, User Directory, Profile, Membership & User Registration plugin for WordPress is vulnerable to Deserialization of Untrusted Data in versions up to, and including, 4.3.1 This is due to insufficient input validation and type checking on the wpuf_files parameter during form submission, combined with unconditional deserialization via maybe_unserialize()…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5127">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-53326 – LINQPad before 5.52.01 Pro edition is vulnerable to Unsafe Deserialization in LI...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-53326</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-53326</guid>
    <pubDate>Fri, 08 May 2026 06:16:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-53326</strong></p>
  <p>LINQPad before 5.52.01 Pro edition is vulnerable to Unsafe Deserialization in LINQPad.AutoRefManager::PopulateFromCache(), leading to code execution.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-53326">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41586 – Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framew...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41586</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41586</guid>
    <pubDate>Thu, 07 May 2026 06:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41586</strong></p>
  <p>Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applications. From versions 1.0.0 to 2.2.26, Channel.java implements readObject() and exposes deSerializeChannel() which call ObjectInputStream.readObject() on untrusted byte arrays without configuring an ObjectInputFilter. This is a classic Java deserialization RCE pattern. At time of…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41586">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34084 – PhpSpreadsheet is a library for reading and writing spreadsheet files. In versio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34084</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34084</guid>
    <pubDate>Tue, 05 May 2026 20:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34084</strong></p>
  <p>PhpSpreadsheet is a library for reading and writing spreadsheet files. In versions 1.30.2 and earlier, 2.0.0 through 2.1.14, 2.2.0 through 2.4.3, 3.3.0 through 3.10.3, and 4.0.0 through 5.5.0, when the filename argument to IOFactory::load() is user-controlled, an attacker can supply a PHP stream wrapper path (such as phar://, ftp://, or ssh2.sftp://) that passes the is_file() check in File::asser…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34084">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42440 – OOM Denial of Service via Unbounded Array Allocation in Apache OpenNLP AbstractM...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42440</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42440</guid>
    <pubDate>Mon, 04 May 2026 17:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42440</strong></p>
  <p>OOM Denial of Service via Unbounded Array Allocation in Apache OpenNLP AbstractModelReader   Versions Affected:   before 2.5.9  before 3.0.0-M3   Description:   The AbstractModelReader methods getOutcomes(), getOutcomePatterns(), and getPredicates() each read a 32-bit signed integer count field from a binary model stream and pass that value directly to an array allocation (new String[numOutcomes]…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-789</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42440">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7647 – The Profile Builder Pro plugin for WordPress is vulnerable to PHP Object Injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7647</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7647</guid>
    <pubDate>Sat, 02 May 2026 06:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7647</strong></p>
  <p>The Profile Builder Pro plugin for WordPress is vulnerable to PHP Object Injection in all versions up to and including 3.14.5. This is due to the use of PHP's maybe_unserialize() function on the attacker-controlled 'args' POST parameter within the wppb_request_users_pins_action_callback() AJAX handler, which lacked any nonce verification, type checking, or input validation before deserialization.…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7647">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-42473 – Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42473</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42473</guid>
    <pubDate>Fri, 01 May 2026 16:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-42473</strong></p>
  <p>Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The session and cache handlers use unserialize() on data from the filesystem in the FileHandler object.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42473">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-42472 – Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42472</guid>
    <pubDate>Fri, 01 May 2026 16:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-42472</strong></p>
  <p>Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The session and cache handlers use unserialize() on data from Redis in the RedisHandler object.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42471 – Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The sy...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42471</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42471</guid>
    <pubDate>Fri, 01 May 2026 16:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42471</strong></p>
  <p>Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The sync-invoke client (Connection.php:76) calls unserialize() on data received from the server response, enabling client-side RCE if connecting to a malicious server.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42471">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-37552 – Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The sy...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-37552</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-37552</guid>
    <pubDate>Fri, 01 May 2026 16:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-37552</strong></p>
  <p>Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The sync-invoke TCP server (Server.php:87) receives data from a TCP socket, passes it directly to Opis\Closure\unserialize(), then executes the result via call_user_func(). No authentication or signature verification exists on the TCP connection. An attacker with access to the localhost TCP port (server binds 127.0.0.1) can…</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-37552">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7584 – The LabOne Q serialization framework uses a class-loading mechanism (import_cls)...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7584</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7584</guid>
    <pubDate>Fri, 01 May 2026 08:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7584</strong></p>
  <p>The LabOne Q serialization framework uses a class-loading mechanism (import_cls) to dynamically import and instantiate Python classes during deserialization. Prior to the fix, this mechanism accepted arbitrary fully-qualified class names from the serialized data without any validation of the target class or restriction on which modules could be imported. An attacker can craft a serialized experim…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7584">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24186 – NVIDIA FLARE SDK  contains a vulnerability in FOBS, where an attacker may cause ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24186</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24186</guid>
    <pubDate>Tue, 28 Apr 2026 19:36:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24186</strong></p>
  <p>NVIDIA FLARE SDK  contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sending a malicious FOBS- encoded message. A successful exploit of this vulnerability might lead to code execution.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24186">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-60889 – Insecure deserialization of untrusted input in StellarGroup HPX 1.11.0 under cer...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-60889</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-60889</guid>
    <pubDate>Tue, 28 Apr 2026 16:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-60889</strong></p>
  <p>Insecure deserialization of untrusted input in StellarGroup HPX 1.11.0 under certain conditions may allow attackers to execute arbitrary code or other unspecified impacts.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-60889">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-40860 – JmsBinding.extractBodyFromJms() in camel-jms, and the equivalent JmsBinding clas...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40860</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40860</guid>
    <pubDate>Mon, 27 Apr 2026 09:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-40860</strong></p>
  <p>JmsBinding.extractBodyFromJms() in camel-jms, and the equivalent JmsBinding class in camel-sjms, deserialized the payload of incoming JMS ObjectMessage values via javax.jms.ObjectMessage.getObject() without applying any ObjectInputFilter, class allowlist or class denylist. Because this code path is reached whenever the mapJmsMessage option is enabled (the default) and Camel acts as a JMS consumer…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40860">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41476 – Deskflow is a keyboard and mouse sharing app.  Prior to 1.26.0.138, a remote mem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41476</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41476</guid>
    <pubDate>Fri, 24 Apr 2026 20:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41476</strong></p>
  <p>Deskflow is a keyboard and mouse sharing app.  Prior to 1.26.0.138, a remote memory-safety vulnerability in Deskflow's clipboard deserialization allows a connected peer to trigger an out-of-bounds read by sending a malformed clipboard update. The issue is in the implementation of src/lib/deskflow/IClipboard.cpp. This is reachable because ClipboardChunk::assemble() in src/lib/deskflow/ClipboardChu…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41476">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41316 – ERB is a templating system for Ruby. Ruby 2.7.0 (before ERB 2.2.0 was published ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41316</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41316</guid>
    <pubDate>Fri, 24 Apr 2026 03:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41316</strong></p>
  <p>ERB is a templating system for Ruby. Ruby 2.7.0 (before ERB 2.2.0 was published on rubygems.org) introduced an `@_init` instance variable guard in `ERB#result` and `ERB#run` to prevent code execution when an ERB object is reconstructed via `Marshal.load` (deserialization). However, three other public methods that also evaluate `@src` via `eval()` were not given the same guard: `ERB#def_method`, `…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-693</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41316">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-33819 – Deserialization of untrusted data in Microsoft Bing allows an unauthorized attac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33819</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33819</guid>
    <pubDate>Thu, 23 Apr 2026 22:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-33819</strong></p>
  <p>Deserialization of untrusted data in Microsoft Bing allows an unauthorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33819">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-26210 – KTransformers through 0.5.3 contains an unsafe deserialization vulnerability in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26210</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26210</guid>
    <pubDate>Thu, 23 Apr 2026 22:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-26210</strong></p>
  <p>KTransformers through 0.5.3 contains an unsafe deserialization vulnerability in the balance_serve backend mode where the scheduler RPC server binds a ZMQ ROUTER socket to all interfaces with no authentication and deserializes incoming messages using pickle.loads() without validation. Attackers can send a crafted pickle payload to the exposed ZMQ socket to execute arbitrary code on the server with…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26210">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-25874 – LeRobot through 0.5.1 contains an unsafe deserialization vulnerability in the as...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25874</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25874</guid>
    <pubDate>Thu, 23 Apr 2026 20:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-25874</strong></p>
  <p>LeRobot through 0.5.1 contains an unsafe deserialization vulnerability in the async inference pipeline where pickle.loads() is used to deserialize data received over unauthenticated gRPC channels without TLS in the policy server and robot client components. An unauthenticated network-reachable attacker can achieve arbitrary code execution on the server or client by sending a crafted pickle payloa…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25874">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-62373 – Pipecat is an open-source Python framework for building real-time voice and mult...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62373</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62373</guid>
    <pubDate>Thu, 23 Apr 2026 16:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-62373</strong></p>
  <p>Pipecat is an open-source Python framework for building real-time voice and multimodal conversational agents. Versions 0.0.41 through 0.0.93 have a vulnerability in `LivekitFrameSerializer` – an optional, non-default, undocumented frame serializer class (now deprecated) intended for LiveKit integration. The class's `deserialize()` method uses Python's `pickle.loads()` on data received from WebSoc…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62373">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41134 – Kiota is an OpenAPI based HTTP Client code generator. Versions prior to 1.31.1 a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41134</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41134</guid>
    <pubDate>Wed, 22 Apr 2026 21:17:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41134</strong></p>
  <p>Kiota is an OpenAPI based HTTP Client code generator. Versions prior to 1.31.1 are affected by a code-generation literal injection vulnerability in multiple writer sinks (for example: serialization/deserialization keys, path/query parameter mappings, URL template metadata, enum/property metadata, and default value emission). When malicious values from an OpenAPI description are emitted into gener…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41134">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6857 – A flaw was found in camel-infinispan. This vulnerability involves unsafe deseria...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6857</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6857</guid>
    <pubDate>Wed, 22 Apr 2026 13:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6857</strong></p>
  <p>A flaw was found in camel-infinispan. This vulnerability involves unsafe deserialization in the ProtoStream remote aggregation repository. A remote attacker with low privileges could exploit this by sending specially crafted data, leading to arbitrary code execution. This allows the attacker to gain full control over the affected system, impacting its confidentiality, integrity, and availability.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6857">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6023 – In Progress® Telerik® UI for AJAX versions 2024.4.1114 through 2026.1.421, the R...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6023</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6023</guid>
    <pubDate>Wed, 22 Apr 2026 08:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6023</strong></p>
  <p>In Progress® Telerik® UI for AJAX versions 2024.4.1114 through 2026.1.421, the RadFilter control is vulnerable to insecure deserialization when restoring filter state if the state is exposed to the client. If an attacker tampers with this state, a server-side remote code execution is possible.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6023">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-39467 – Deserialization of Untrusted Data vulnerability in MetaSlider Responsive Slider ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-39467</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-39467</guid>
    <pubDate>Tue, 21 Apr 2026 10:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-39467</strong></p>
  <p>Deserialization of Untrusted Data vulnerability in MetaSlider Responsive Slider by MetaSlider allows Object Injection.This issue affects Responsive Slider by MetaSlider: from n/a through 3.106.0.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39467">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25524 – Magento Long Term Support (LTS) is an unofficial, community-driven project provi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25524</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25524</guid>
    <pubDate>Mon, 20 Apr 2026 17:16:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25524</strong></p>
  <p>Magento Long Term Support (LTS) is an unofficial, community-driven project provides an alternative to the Magento Community Edition e-commerce platform with a high level of backward compatibility. Prior to version 20.17.0, PHP functions such as `getimagesize()`, `file_exists()`, and `is_readable()` can trigger deserialization when processing `phar://` stream wrapper paths. OpenMage LTS uses these…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25524">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40901 – DataEase is an open-source data visualization and analytics platform. Versions 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40901</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40901</guid>
    <pubDate>Thu, 16 Apr 2026 21:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40901</strong></p>
  <p>DataEase is an open-source data visualization and analytics platform. Versions 2.10.20 and below ship the legacy velocity-1.7.jar, which pulls in commons-collections-3.2.1.jar containing the InvokerTransformer deserialization gadget chain. Quartz 2.3.2, also bundled in the application, deserializes job data BLOBs from the qrtz_job_details table using ObjectInputStream with no deserialization filt…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40901">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-5426 – Hard-coded ASP.NET/IIS machineKey value in Digital Knowledge KnowledgeDeliver de...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5426</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5426</guid>
    <pubDate>Thu, 16 Apr 2026 16:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-5426</strong></p>
  <p>Hard-coded ASP.NET/IIS machineKey value in Digital Knowledge KnowledgeDeliver deployments prior to February 24, 2026 allows adversaries to circumvent ViewState validation mechanisms and achieve remote code execution via malicious ViewState deserialization attacks</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-321</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5426">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34615 – Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserializati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34615</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34615</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34615</strong></p>
  <p>Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34615">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32192 – Deserialization of untrusted data in Azure Monitor Agent allows an authorized at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32192</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32192</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32192</strong></p>
  <p>Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32192">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32184 – Deserialization of untrusted data in Microsoft High Performance Compute Pack (HP...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32184</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32184</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32184</strong></p>
  <p>Deserialization of untrusted data in Microsoft High Performance Compute Pack (HPC) allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32184">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27303 – Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserializati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27303</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27303</guid>
    <pubDate>Tue, 14 Apr 2026 18:16:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27303</strong></p>
  <p>Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27303">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-3017 – The Smart Post Show – Post Grid, Post Carousel &amp; Slider, and List Category Posts...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3017</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3017</guid>
    <pubDate>Tue, 14 Apr 2026 06:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-3017</strong></p>
  <p>The Smart Post Show – Post Grid, Post Carousel & Slider, and List Category Posts plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.0.12 via deserialization of untrusted input in the import_shortcodes() function. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject a PHP Object. No known POP chain…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3017">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-40044 – Pachno 1.0.6 contains a deserialization vulnerability that allows unauthenticate...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40044</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40044</guid>
    <pubDate>Mon, 13 Apr 2026 19:16:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-40044</strong></p>
  <p>Pachno 1.0.6 contains a deserialization vulnerability that allows unauthenticated attackers to execute arbitrary code by injecting malicious serialized objects into cache files. Attackers can write PHP object payloads to world-writable cache files with predictable names in the cache directory, which are unserialized during framework bootstrap before authentication checks occur.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40044">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-1462 – A vulnerability in the `TFSMLayer` class of the `keras` package, version 3.13.0,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1462</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1462</guid>
    <pubDate>Mon, 13 Apr 2026 15:17:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1462</strong></p>
  <p>A vulnerability in the `TFSMLayer` class of the `keras` package, version 3.13.0, allows attacker-controlled TensorFlow SavedModels to be loaded during deserialization of `.keras` models, even when `safe_mode=True`. This bypasses the security guarantees of `safe_mode` and enables arbitrary attacker-controlled code execution during model inference under the victim's privileges. The issue arises due…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1462">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35337 – Deserialization of Untrusted Data vulnerability in Apache Storm.

Versions Affec...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35337</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35337</guid>
    <pubDate>Mon, 13 Apr 2026 10:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35337</strong></p>
  <p>Deserialization of Untrusted Data vulnerability in Apache Storm.  Versions Affected: before 2.8.6.   Description: When processing topology credentials submitted via the Nimbus Thrift API, Storm deserializes the base64-encoded TGT blob using ObjectInputStream.readObject() without any class filtering or validation. An authenticated user with topology submission rights could supply a crafted seriali…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35337">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-3296 – The Everest Forms plugin for WordPress is vulnerable to PHP Object Injection in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3296</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3296</guid>
    <pubDate>Wed, 08 Apr 2026 02:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-3296</strong></p>
  <p>The Everest Forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.4.3 via deserialization of untrusted input from form entry metadata. This is due to the html-admin-page-entries-view.php file calling PHP's native unserialize() on stored entry meta values without passing the allowed_classes parameter. This makes it possible for unauthenticated att…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3296">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-3357 – IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated u...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3357</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3357</guid>
    <pubDate>Wed, 08 Apr 2026 01:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-3357</strong></p>
  <p>IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated user to execute arbitrary code on the system, caused by an insecure default setting which permits the deserialization of untrusted data in the FAISS component.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3357">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-33439 – Open Access Management (OpenAM) is an access management solution. Prior to 16.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33439</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33439</guid>
    <pubDate>Tue, 07 Apr 2026 21:17:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-33439</strong></p>
  <p>Open Access Management (OpenAM) is an access management solution. Prior to 16.0.6, OpenIdentityPlatform OpenAM is vulnerable to pre-authentication Remote Code Execution (RCE) via unsafe Java deserialization of the jato.clientSession HTTP parameter. This bypasses the WhitelistObjectInputStream mitigation that was applied to the jato.pageSession parameter after CVE-2021-35464. An unauthenticated at…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33439">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24156 – NVIDIA DALI contains a vulnerability where an attacker could cause a deserializa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24156</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24156</guid>
    <pubDate>Tue, 07 Apr 2026 18:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24156</strong></p>
  <p>NVIDIA DALI contains a vulnerability where an attacker could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to arbitrary code execution.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24156">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35554 – A race condition in the Apache Kafka Java producer client’s buffer pool manageme...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35554</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35554</guid>
    <pubDate>Tue, 07 Apr 2026 14:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35554</strong></p>
  <p>A race condition in the Apache Kafka Java producer client’s buffer pool management can cause messages to be silently delivered to incorrect topics.  When a produce batch expires due to delivery.timeout.ms while a network request containing that batch is still in flight, the batch’s ByteBuffer is prematurely deallocated and returned to the buffer pool. If a subsequent producer batch—potentially de…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35554">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5536 – A weakness has been identified in FedML-AI FedML up to 0.8.9. Affected is the fu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5536</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5536</guid>
    <pubDate>Sun, 05 Apr 2026 04:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5536</strong></p>
  <p>A weakness has been identified in FedML-AI FedML up to 0.8.9. Affected is the function sendMessage of the file grpc_server.py of the component gRPC server. Executing a manipulation can lead to deserialization. The attack may be performed from remote. The vendor was contacted early about this disclosure but did not respond in any way.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5536">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34838 – Group-Office is an enterprise customer relationship management and groupware too...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34838</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34838</guid>
    <pubDate>Thu, 02 Apr 2026 20:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34838</strong></p>
  <p>Group-Office is an enterprise customer relationship management and groupware tool. Prior to versions 6.8.156, 25.0.90, and 26.0.12, a vulnerability in the AbstractSettingsCollection model leads to insecure deserialization when these settings are loaded. By injecting a serialized FileCookieJar object into a setting string, an authenticated attacker can achieve Arbitrary File Write, leading directl…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34838">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24165 – NVIDIA BioNeMo contains a vulnerability where a user could cause a deserializati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24165</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24165</guid>
    <pubDate>Tue, 31 Mar 2026 17:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24165</strong></p>
  <p>NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24165">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24164 – NVIDIA BioNeMo contains a vulnerability where a user could cause a deserializati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24164</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24164</guid>
    <pubDate>Tue, 31 Mar 2026 17:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24164</strong></p>
  <p>NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24164">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
