CVE-2026-24006 | lxsmnsyc seroval up to 1.4.0 Maximum Call serialization depthLimit allocation of resources (GHSA-3j22-8qj3-26mx)
A vulnerability categorized as problematic has been discovered in lxsmnsyc seroval up to 1.4.0. This issue affects the function serialization of the component Maximum Call Handler. Executing a manipulation of the argument depthLimit can lead to allocation of resources.
This vulnerability is registered as CVE-2026-24006. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.