Vulnerabilities (CVE)

Filtered by vendor Visicut Subscribe
Filtered by product Visicut
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-43708 1 Visicut 1 Visicut 2025-09-24 N/A 3.3 LOW
VisiCut 2.1 allows stack consumption via an XML document with nested set elements, as demonstrated by a java.util.HashMap StackOverflowError when reference='../../../set/set[2]' is used, aka an "insecure deserialization" issue.
CVE-2025-25940 1 Visicut 1 Visicut 2025-06-23 N/A 9.8 CRITICAL
VisiCut 2.1 allows code execution via Insecure XML Deserialization in the loadPlfFile method of VisicutModel.java.