CVE-2025-15246

A vulnerability was determined in aizuda snail-job up to 1.7.0 on macOS. Affected by this vulnerability is the function FurySerializer.deserialize of the component API. This manipulation of the argument argsStr causes deserialization. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
Configurations

No configuration.

History

30 Dec 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-30 12:15

Updated : 2025-12-31 20:43


NVD link : CVE-2025-15246

Mitre link : CVE-2025-15246

CVE.ORG link : CVE-2025-15246


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation

CWE-502

Deserialization of Untrusted Data