CWE-502
2,964 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Deserialization of Untrusted Data
The product deserializes untrusted data without sufficiently verifying that the resulting data will be valid.
CVEs (2,964)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Deserialization of Untrusted Data vulnerability in EMV The Hospital nrghospital allows Object Injection.
This issue affects The Hospital: from n/a through 1.8.1. |
Deserialization of Untrusted Data vulnerability in Themeton The Barber Shop allows Object Injection.
This issue affects The Barber Shop: from n/a through 1.9. |
Deserialization of Untrusted Data vulnerability in Themeton Lagom allows Object Injection.
This issue affects Lagom: from n/a through 2.0. |
Unauthenticated PHP Object Injection in WP Activity Log <= 5.6.3.1 versions. |
Contributor PHP Object Injection in Fusion Builder <= 3.15.4 versions. |
Unauthenticated PHP Object Injection in JetEngine <= 3.8.10 versions. |
Unauthenticated PHP Object Injection in Thrive Apprentice < 10.8.10.2 versions. |
Contributor PHP Object Injection in JetEngine <= 3.8.9.1 versions. |
Unauthenticated PHP Object Injection in AI Lab < 5.4.2 versions. |
Unauthenticated PHP Object Injection in Valeska <= 1.2.2 versions. |
Unauthenticated PHP Object Injection in Behold <= 1.5 versions. |
Unauthenticated PHP Object Injection in Esmée <= 1.4 versions. |
Unauthenticated PHP Object Injection in Léonie <= 1.2.1 versions. |
Unauthenticated PHP Object Injection in TechLink <= 1.3 versions. |
Unauthenticated PHP Object Injection in Roisin <= 1.4 versions. |
Unauthenticated PHP Object Injection in EasyMeals <= 1.5.1 versions. |
Unauthenticated PHP Object Injection in Ashtanga <= 1.2 versions. |
Unauthenticated PHP Object Injection in LuxeDrive <= 1.4 versions. |
Unauthenticated PHP Object Injection in Laurits <= 1.5.1 versions. |
Unauthenticated PHP Object Injection in Reina <= 2.1 versions. |