An attacker who intercepts and tampers with traffic between the client application and the API Gateway server could potentially deserialize arbitrary objects. This vulnerability could lead to broken security expectations or remote code execution.
CVSS
No CVSS.
References
Configurations
No configuration.
History
10 Jun 2026, 07:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-10 07:16
Updated : 2026-06-10 07:16
NVD link : CVE-2026-11815
Mitre link : CVE-2026-11815
CVE.ORG link : CVE-2026-11815
JSON object : View
Products Affected
No product.
CWE
CWE-502
Deserialization of Untrusted Data
