PT-2026-28027 · Unknown · Js Archive List

Published

2026-03-25

·

Updated

2026-03-26

·

CVE-2026-32513

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions JS Archive List versions through 6.1.7
Description A flaw exists in the deserialization of untrusted data within the jquery-archive-list-widget component of JS Archive List, potentially allowing for object injection.
Recommendations Update JS Archive List to a version later than 6.1.7.

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2026-32513

Affected Products

Js Archive List