PT-2026-26269 · Unknown · Themeton Finag

CVE-2025-60237

·

Publicado

2026-03-19

·

Atualizado

2026-03-23

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Themeton Finag versions through 1.5.0
Description An issue exists in Themeton Finag where deserialization of untrusted data can lead to object injection. This allows for potential exploitation through the deserialization process.
Recommendations Update Finag to a version newer than 1.5.0.

Correção

RCE

Deserialization of Untrusted Data

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-60237

Produtos afetados

Themeton Finag