Deserialization of Untrusted Data vulnerability in Brainstorm Force CartFlows cartflows allows Object Injection.This issue affects CartFlows: from n/a through <= 2.1.19.
References
Configurations
No configuration.
History
24 Feb 2026, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.2 |
19 Feb 2026, 09:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-19 09:16
Updated : 2026-02-24 21:16
NVD link : CVE-2026-25316
Mitre link : CVE-2026-25316
CVE.ORG link : CVE-2026-25316
JSON object : View
Products Affected
No product.
CWE
CWE-502
Deserialization of Untrusted Data
