What is CVE-2026-18642?
CVE-2026-18642 is a deserialization of untrusted data vulnerability in TUBITAK BILGEM's eta-otp-lock, leading to Object Injection. It affects versions before 1.0.4, requiring an immediate update to the patched version.
Azərbaycanca: CVE-2026-18642, TÜBİTAK BİLGEM-in eta-otp-lock proqramında etibarsız məlumatların deserializasiyası zəifliyidir. Bu, Object Injection hücumlarına səbəb ola bilər. 1.0.4 versiyasından əvvəlki versiyalar təsirlənir, dərhal yeniləmə tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-502
FAQ2
What software does CVE-2026-18642 affect?
CVE-2026-18642 affects TUBITAK BILGEM's eta-otp-lock software.
Which versions of eta-otp-lock are vulnerable to CVE-2026-18642?
All versions before 1.0.4 are vulnerable to this vulnerability.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.