CVE-2026-25316

Publication date

2026-02-19 08:26:54

Family

Patchstack

State

PUBLISHED

Description

Deserialization of Untrusted Data vulnerability in Brainstorm Force CartFlows cartflows allows Object Injection.This issue affects CartFlows: from n/a through <= 2.1.19.