{"id":"AZL-89499","summary":"CVE-2026-11463 affecting package cereal 1.3.2-1","details":"A vulnerability was determined in USCiLab Cereal up to 1.3.2. Affected is an unknown function of the component Shared Pointer Handler. Executing a manipulation can lead to type confusion. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure.","modified":"2026-09-02T06:51:55Z","published":"2026-06-07T23:16:41Z","upstream":["CVE-2026-11463"],"references":[{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-11463"}],"affected":[{"package":{"name":"cereal","ecosystem":"Azure Linux:3","purl":"pkg:rpm/azure-linux/cereal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"1.3.2-1"}]}],"database_specific":{"source":"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-89499.json"}}],"schema_version":"1.9.0"}