{"id":"CVE-2022-3525","aliases":["GHSA-cv9g-h8mm-xx5h"],"url":"https://o3.security/vulnerability/CVE-2022-3525","summary":"Deserialization of Untrusted Data in librenms/librenms","details":"Deserialization of Untrusted Data in GitHub repository librenms/librenms prior to 22.10.0.","published":"2022-11-20T00:00:00Z","modified":"2026-08-12T03:51:38.075801331Z","cvss":{"score":9,"severity":"CRITICAL","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"librenms/librenms","fixedVersion":"22.10.0"}],"fix":{"url":"https://github.com/librenms/librenms/commit/ae3925b09ad3c5d0f7a9d5a26ae2f2f778834948","label":"librenms/librenms@ae3925b"},"references":[{"type":"WEB","url":"https://huntr.dev/bounties/ed048e8d-87af-440a-a91f-be1e65a40330"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/3xxx/CVE-2022-3525.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-3525"},{"type":"FIX","url":"https://github.com/librenms/librenms/commit/ae3925b09ad3c5d0f7a9d5a26ae2f2f778834948"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:38.075801331Z"}}