Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
ThemeREX Classter: Untrusted Data Can Be Injected
CVE-2025-54001
Summary
An issue in ThemeREX Classter allows attackers to inject malicious data, potentially leading to security breaches. This affects Classter versions prior to 2.5. Users are advised to update to the latest version to ensure their system remains secure.
Original title
Deserialization of Untrusted Data vulnerability in ThemeREX Classter classter allows Object Injection.This issue affects Classter: from n/a through <= 2.5.
Original description
Deserialization of Untrusted Data vulnerability in ThemeREX Classter classter allows Object Injection.This issue affects Classter: from n/a through <= 2.5.
nvd CVSS3.1
9.8
Vulnerability type
CWE-502
Deserialization of Untrusted Data
Published: 5 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026