CVE-2026-49453 | laurent22 Joplin up to 3.6.14/3.7.1 Synchronization BaseItem.unserialize input validation

SecurityVulns

A vulnerability categorized as critical has been discovered in laurent22 Joplin up to 3.6.14/3.7.1. Affected by this vulnerability is the function BaseItem.unserialize of the component Synchronization. The manipulation results in improper input validation.

This vulnerability is identified as CVE-2026-49453. The attack can be executed remotely. There is not any exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More