Filtered by vendor Visicut Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-43708 1 Visicut 1 Visicut 2025-09-24 3.3 Low
VisiCut 2.1 allows stack consumption via an XML document with nested set elements, as demonstrated by a java.util.HashMap StackOverflowError when reference='../../../set/set[2]' is used, aka an "insecure deserialization" issue.
CVE-2025-25940 1 Visicut 1 Visicut 2025-06-23 9.8 Critical
VisiCut 2.1 allows code execution via Insecure XML Deserialization in the loadPlfFile method of VisicutModel.java.
CVE-2024-51365 1 Visicut 1 Visitcut 2024-12-04 9.8 Critical
An arbitrary file upload vulnerability in the importSettings method of VisiCut v2.1 allows attackers to execute arbitrary code via uploading a crafted Zip file.