Vulnerabilities > Deserialization of Untrusted Data

DATE CVE VULNERABILITY TITLE RISK
2023-12-21 CVE-2023-51656 Deserialization of Untrusted Data vulnerability in Apache Iotdb
Deserialization of Untrusted Data vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 0.13.0 through 0.13.4. Users are recommended to upgrade to version 1.2.2, which fixes the issue.
network
low complexity
apache CWE-502
critical
9.8
2023-12-20 CVE-2022-47599 Deserialization of Untrusted Data vulnerability in Bitapps File Manager
Deserialization of Untrusted Data vulnerability in File Manager by Bit Form Team File Manager – 100% Free & Open Source File Manager Plugin for WordPress | Bit File Manager.This issue affects File Manager – 100% Free & Open Source File Manager Plugin for WordPress | Bit File Manager: from n/a through 5.2.7.
network
low complexity
bitapps CWE-502
7.2
2023-12-20 CVE-2023-7018 Deserialization of Untrusted Data vulnerability in Huggingface Transformers
Deserialization of Untrusted Data in GitHub repository huggingface/transformers prior to 4.36.
local
low complexity
huggingface CWE-502
7.8
2023-12-20 CVE-2023-49772 Deserialization of Untrusted Data vulnerability in PHPbits Genesis Simple Love 2.0
Deserialization of Untrusted Data vulnerability in Phpbits Creative Studio Genesis Simple Love.This issue affects Genesis Simple Love: from n/a through 2.0.
network
low complexity
phpbits CWE-502
critical
9.8
2023-12-20 CVE-2023-49773 Deserialization of Untrusted Data vulnerability in Bcorp Shortcodes Project Bcorp Shortcodes 0.23
Deserialization of Untrusted Data vulnerability in Tim Brattberg BCorp Shortcodes.This issue affects BCorp Shortcodes: from n/a through 0.23.
network
low complexity
bcorp-shortcodes-project CWE-502
critical
9.8
2023-12-20 CVE-2023-28782 Deserialization of Untrusted Data vulnerability in Gravityforms Gravity Forms 2.7.3
Deserialization of Untrusted Data vulnerability in Rocketgenius Inc.
network
low complexity
gravityforms CWE-502
critical
9.8
2023-12-20 CVE-2023-40555 Deserialization of Untrusted Data vulnerability in Uxthemes Flatsome
Deserialization of Untrusted Data vulnerability in UX-themes Flatsome | Multi-Purpose Responsive WooCommerce Theme.This issue affects Flatsome | Multi-Purpose Responsive WooCommerce Theme: from n/a through 3.17.5.
network
low complexity
uxthemes CWE-502
critical
9.8
2023-12-20 CVE-2023-46147 Deserialization of Untrusted Data vulnerability in Themify Ultra
Deserialization of Untrusted Data vulnerability in Themify Themify Ultra.This issue affects Themify Ultra: from n/a through 7.3.5.
network
low complexity
themify CWE-502
8.8
2023-12-20 CVE-2023-47507 Deserialization of Untrusted Data vulnerability in Averta Master Slider PRO 3.6.5
Deserialization of Untrusted Data vulnerability in Master Slider Master Slider Pro.This issue affects Master Slider Pro: from n/a through 3.6.5.
network
low complexity
averta CWE-502
critical
9.8
2023-12-19 CVE-2023-34027 Deserialization of Untrusted Data vulnerability in Rajarora795 Recently Viewed products 1.0.0
Deserialization of Untrusted Data vulnerability in Rajnish Arora Recently Viewed Products.This issue affects Recently Viewed Products: from n/a through 1.0.0.
network
low complexity
rajarora795 CWE-502
critical
9.8