Weaknesses of type CWE-502
2,226 resultsCVE-2023-20878HIGHVMware Aria Operations contains a deserialization vulnerability. A malicious actor with administrative privileges can execute arbitrary commEPSS 1.0%CVE-2024-40624CRITICALDeserialization of untrusted data in torrentpier/torrentpierEPSS 1.0%CVE-2026-0760CRITICALFoundation Agents MetaGPT deserialize_message Deserialization of Untrusted Data Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-0764CRITICALGPT Academic upload Deserialization of Untrusted Data Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-0763CRITICALGPT Academic run_in_subprocess_wrapper_func Deserialization of Untrusted Data Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-1772HIGHPlay.ht – Make Your Blog Posts Accessible With Text to Speech Audio <= 3.6.4 - Authenticated (Contributor+) PHP Object InjectionEPSS 1.0%CVE-2025-27203CRITICALAdobe Connect | Deserialization of Untrusted Data (CWE-502)EPSS 1.0%CVE-2023-7334CRITICALChangjetong T+ <= 16.x GetStoreWarehouseByStore Deserialization RCEEPSS 1.0%CVE-2023-20852CRITICALaEnrich a+HRD - Deserialization of Untrusted DataEPSS 1.0%CVE-2023-20853CRITICALaEnrich a+HRD - Deserialization of Untrusted DataEPSS 1.0%CVE-2024-3483HIGHRemote Code Execution vulnerability in the iManagerEPSS 1.0%CVE-2021-4118HIGHDeserialization of Untrusted Data in pytorchlightning/pytorch-lightningEPSS 1.0%CVE-2025-54366HIGHFreeScout's deserialization of untrusted data leads to Remote Code ExecutionEPSS 1.0%CVE-2023-0960MEDIUMSeaCMS Picture Management config.ftp.php deserializationEPSS 1.0%CVE-2022-3342HIGHJetpack CRM <= 5.3.1 - Cross-Site Request Forgery and PHAR DeserializationEPSS 1.0%CVE-2024-11145CRITICALEasy Folder Listing Pro deserialization vulnerabilityEPSS 1.0%CVE-2024-3020HIGHCarousel, Slider, Gallery by WP Carousel – Image Carousel & Photo Gallery, Post Carousel & Post Grid, Product Carousel & Product Grid for WooCommerce <= 2.6.3 - Authenticated (Admin+) PHP Object InjectionEPSS 1.0%CVE-2025-8266MEDIUMyanyutao0402 ChanCMS collect.js getArticle deserializationEPSS 1.0%CVE-2022-0138HIGHAirspan Networks Mimosa Deserialization of Untrusted DataEPSS 1.0%CVE-2023-46227HIGHApache inlong has an Arbitrary File Read VulnerabilityEPSS 1.0%