CVE-2026-53914

Updated on 26 Jun 2026

Severity

6.7 Medium severity

Details

CVSS score
6.7
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Overview

About vulnerability

In JetBrains Kotlin before 2.4.20 code execution was possible via unsafe deserialization in the build cache metadata

Details

Affected product:
Jackson , OkHttp , kotlin , micronaut-core , okio
Affected packages:
kotlin-sam-with-receiver-compiler-plugin @ 1.4.20 (+595 more)