Opticam · Optica · CVE-2022-41875
**Name of the Vulnerable Software and Affected Versions**
Optica versions prior to 0.10.2
**Description**
A remote code execution issue in Optica allows unauthenticated attackers to execute arbitrary code via specially crafted JSON payloads. This can lead to remote code execution on the attacked system running Optica.
**Recommendations**
For versions prior to 0.10.2, update to version 0.10.2 or later, where the call to the function `oj.load` was changed to `oj.safe load` to resolve the issue.