Skip to main content
← All Articles

Tag

#Deserialization

7 articles

Advertisement

VU
HIGH
Vulnerabilities

CVE-2026-45247: Mirasvit Full Page Cache Warmer Exploited — Patch Now

CISA adds CVE-2026-45247, a deserialization vulnerability in Mirasvit Full Page Cache Warmer for Magento, to the KEV catalog after reports of active exploitation.

Runtime Rebel Intel
3 min read·Jun 3, 2026
CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now
HIGH
Vulnerabilities

CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now

Microsoft addresses CVE-2026-45659, a high-severity RCE flaw in SharePoint Server caused by untrusted data deserialization. Learn how to mitigate this risk.

Runtime Rebel Intel
3 min read·May 26, 2026
Hugging Face LeRobot RCE via CVE-2026-25874 — Mitigation Guide
CRITICAL
Vulnerabilities

Hugging Face LeRobot RCE via CVE-2026-25874 — Mitigation Guide

Technical analysis of CVE-2026-25874, a critical unpatched RCE vulnerability in Hugging Face LeRobot robotics platform with a CVSS score of 9.3.

Runtime Rebel Intel
3 min read·Apr 28, 2026
VU
CRITICAL
Vulnerabilities

CISA KEV Update: Exchange Server, Adobe, MS Windows Exploits

CISA adds seven vulnerabilities, including critical Microsoft Exchange Server deserialization, to its Known Exploited Vulnerabilities Catalog, urging immediate

Runtime Rebel Intel
4 min read·Apr 14, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-4681: Critical RCE in PTC Windchill & FlexPLM

Critical RCE vulnerability CVE-2026-4681 affects PTC Windchill and FlexPLM via deserialization. Patch now to prevent code injection in critical manufacturing.

Runtime Rebel Intel
5 min read·Mar 26, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-20131: Cisco FMC/SCC Deserialization Vulnerability Under Active Attack

CISA adds CVE-2026-20131, a critical deserialization vulnerability in Cisco Secure Firewall Management Center (FMC) and Security Cloud Control (SCC), to KEV Catalog due

Runtime Rebel Intel
4 min read·Mar 20, 2026
CY
CRITICAL
Cybersecurity

CISA Catalogs Critical Roundcube Deserialization Vulnerability Under Active Exploitation

CISA has added CVE-2025-49113 to the Known Exploited Vulnerabilities catalog, addressing a critical RCE flaw in Roundcube webmail software resulting from untrusted data deserialization.

Runtime Rebel Intel
2 min read·Feb 23, 2026