Vulnerabilities > Deserialization of Untrusted Data
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-06-13 | CVE-2019-12799 | Deserialization of Untrusted Data vulnerability in Shopware In createInstanceFromNamedArguments in Shopware through 5.6.x, a crafted web request can trigger a PHP object instantiation vulnerability, which can result in an arbitrary deserialization if the right class is instantiated. | 8.8 |
2019-06-12 | CVE-2019-7840 | Deserialization of Untrusted Data vulnerability in Adobe Coldfusion 11.0/2016/2018 ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a deserialization of untrusted data vulnerability. | 9.8 |
2019-06-06 | CVE-2019-12760 | Deserialization of Untrusted Data vulnerability in Parso Project Parso A deserialization vulnerability exists in the way parso through 0.4.0 handles grammar parsing from the cache. | 7.5 |
2019-06-06 | CVE-2019-11080 | Deserialization of Untrusted Data vulnerability in Sitecore Experience Platform Sitecore Experience Platform (XP) prior to 9.1.1 is vulnerable to remote code execution via deserialization, aka TFS # 293863. | 8.8 |
2019-06-05 | CVE-2019-11956 | Deserialization of Untrusted Data vulnerability in HP Intelligent Management Center A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09. | 8.8 |
2019-06-05 | CVE-2019-11950 | Deserialization of Untrusted Data vulnerability in HP Intelligent Management Center A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09. | 8.8 |
2019-06-05 | CVE-2019-5350 | Deserialization of Untrusted Data vulnerability in HP Intelligent Management Center A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09. | 8.8 |
2019-06-05 | CVE-2019-11945 | Deserialization of Untrusted Data vulnerability in HP Intelligent Management Center A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09. | 9.8 |
2019-06-05 | CVE-2019-11944 | Deserialization of Untrusted Data vulnerability in HP Intelligent Management Center A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09. | 9.8 |
2019-05-31 | CVE-2019-10069 | Deserialization of Untrusted Data vulnerability in Godotengine Godot In Godot through 3.1, remote code execution is possible due to the deserialization policy not being applied correctly. | 9.8 |