Unrated severityNVD Advisory· Published Aug 3, 2026· Updated Aug 3, 2026
Remote Code Execution via Insecure Deserialization in TÜBİTAK BİLGEM's eta-otp-lock
CVE-2026-18642
Description
Deserialization of untrusted data vulnerability in TUBITAK BILGEM Software Technologies Research Institute eta-otp-lock allows Object Injection.
This issue affects eta-otp-lock: before 1.0.4.
Affected products
1- Range: <1.0.4
Patches
Vulnerability mechanics
References
1- siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0730mitregovernment-resource
News mentions
0No linked articles in our index yet.