PT-2025-52175 · Boldthemes · Codiqa

Bonds

·

Published

2025-12-18

·

Updated

2025-12-18

·

CVE-2025-64233

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions BoldThemes Codiqa versions prior to 1.2.8
Description A flaw exists in BoldThemes Codiqa that allows for Object Injection due to deserialization of untrusted data. This issue could potentially allow an attacker to compromise the system.
Recommendations Update BoldThemes Codiqa to version 1.2.8 or later.

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2025-64233

Affected Products

Codiqa