Skip to content

Commit fecd6ad

Browse files
committed
1 parent c9bdc17 commit fecd6ad

File tree

1 file changed

+20
-2
lines changed

1 file changed

+20
-2
lines changed

advisories/unreviewed/2025/12/GHSA-cjmh-96m9-g6qr/GHSA-cjmh-96m9-g6qr.json

Lines changed: 20 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,19 +1,37 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-cjmh-96m9-g6qr",
4-
"modified": "2025-12-10T00:30:22Z",
4+
"modified": "2025-12-10T00:30:30Z",
55
"published": "2025-12-10T00:30:22Z",
66
"aliases": [
77
"CVE-2025-61810"
88
],
9+
"summary": "Urgent",
910
"details": "ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. A high privileged attacker could exploit this vulnerability by providing maliciously crafted serialized data to the application. Exploitation of this issue requires user interaction and scope is changed.",
1011
"severity": [
1112
{
1213
"type": "CVSS_V3",
1314
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H"
1415
}
1516
],
16-
"affected": [],
17+
"affected": [
18+
{
19+
"package": {
20+
"ecosystem": "Packagist",
21+
"name": ""
22+
},
23+
"ranges": [
24+
{
25+
"type": "ECOSYSTEM",
26+
"events": [
27+
{
28+
"introduced": "0"
29+
}
30+
]
31+
}
32+
]
33+
}
34+
],
1735
"references": [
1836
{
1937
"type": "ADVISORY",

0 commit comments

Comments
 (0)