CVE-2026-21655

Deserialization of untrusted data vulnerability in Johnson Control victor on Windows, Johnson Controls CCure 9000, and Johnson Controls Victor Application Server allows capec-586. This issue affects victor: before 8.0; CCure 9000: before 3.2; Victor Application Server: before 4.1.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2026-07-23 21:17

Updated : 2026-08-06 22:17


NVD link : CVE-2026-21655

Mitre link : CVE-2026-21655

CVE.ORG link : CVE-2026-21655


JSON object : View

Products Affected

No product.

CWE
CWE-502

Deserialization of Untrusted Data