PHP object injection vulnerability was identified in contao/core due to untrusted data being passed to deserialize()
function.
{ "nvd_published_at": null, "severity": "HIGH", "github_reviewed_at": "2024-05-15T18:31:04Z", "cwe_ids": [], "github_reviewed": true }