Your RSA-2048 keys break in 2030. Find every one of them before attackers do.

Deserialization of Untrusted Data vulnerabilities

CWE-502 · 12 tracked

Deserialization of Untrusted Data (CWE-502) is a weakness class describing a recurring flaw pattern. Below is every deserialization of untrusted data vulnerability we track — each with severity, exploit status, EPSS exploitation-probability, and step-by-step remediation. Understanding the weakness class helps you recognize the same flaw across different packages and products, and apply the right class of mitigation once.