PT-2026-67398 · Tubitak Bilgem Software Technologies Research Institute · Eta-Otp-Lock

·

CVE-2026-18642

·

Published

2026-08-03

·

Updated

2026-08-03

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Deserialization of untrusted data vulnerability in TUBITAK BILGEM Software Technologies Research Institute eta-otp-lock allows Object Injection.
This issue affects eta-otp-lock: before 1.0.4.

Fix

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-18642

Affected Products

Eta-Otp-Lock