Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-762j-pphq-5gmg

Опубликовано: 24 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.2

Описание

The Utils.deserialize function in pgCodeKeeper 10.12.0 processes serialized data from untrusted sources. If an attacker provides a specially crafted .ser file, deserialization may result in unintended code execution or other malicious behavior on the target system.

The Utils.deserialize function in pgCodeKeeper 10.12.0 processes serialized data from untrusted sources. If an attacker provides a specially crafted .ser file, deserialization may result in unintended code execution or other malicious behavior on the target system.

EPSS

Процентиль: 23%
0.00076
Низкий

8.2 High

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 8.2
nvd
4 месяца назад

The Utils.deserialize function in pgCodeKeeper 10.12.0 processes serialized data from untrusted sources. If an attacker provides a specially crafted .ser file, deserialization may result in unintended code execution or other malicious behavior on the target system.

EPSS

Процентиль: 23%
0.00076
Низкий

8.2 High

CVSS3

Дефекты

CWE-502