CVE-2021-27017
Severity CVSS v4.0:
Pending analysis
Type:
CWE-502
Deserialization of Untrusted Dat
Publication date:
07/02/2025
Last modified:
07/02/2025
Description
Utilization of a module presented a security risk by allowing the deserialization of untrusted/user supplied data. This is resolved in the Puppet Agent 7.4.0 release.
Impact
Base Score 3.x
6.60
Severity 3.x
MEDIUM