CVE-2026-21655
8.7
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Summary
Deserialization of untrusted data vulnerability in Johnson Control victor on Windows allows capec-586.
This issue affects victor: from 2.9 before 3.0.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Johnson Control | victor | 2.9 < 3.0 | affected |
Weaknesses
- CWE-502: CWE-502 Deserialization of untrusted data
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.