๐Ÿ” CVE Alert

CVE-2026-21655

UNKNOWN 0.0

C-CURE 9000 and Victor application server - Deserialization of Untrusted Data

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Deserialization of untrusted data vulnerability in Johnson Control victor on Windows allows capec-586. This issue affects victor: from 2.9 before 3.0.

CWE CWE-502
Vendor johnson control
Product victor
Published Jul 23, 2026
Stay Ahead of the Next One

Get instant alerts for johnson control victor

Be the first to know when new unknown vulnerabilities affecting johnson control victor are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Johnson Control / victor
2.9 < 3.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
johnsoncontrols.com: https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories