{"id":"PYSEC-2026-2984","summary":"Apache Fory PyFory Deserialization of Untrusted Data ","details":"Fory PyFory's ReduceSerializer could bypass documented DeserializationPolicy validation hooks during reduce-state restoration and global-name resolution. An application is vulnerable if it deserializes attacker-controlled data using PyFory Python-native mode with strict mode disabled and relies on DeserializationPolicy to restrict unsafe classes, functions, or module attributes.\n\nThis issue affects Apache Fory: from before 1.0.0.\n\nMitigation: Users of Apache Fory are recommended to upgrade to version 1.0.0 or later, which enforces DeserializationPolicy validation for the affected ReduceSerializer paths and thus fixes this issue.","aliases":["CVE-2026-48207","GHSA-m5gw-83w2-7749"],"modified":"2026-07-13T16:32:42.676818664Z","published":"2026-07-13T15:19:10.366997Z","references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-48207"},{"type":"WEB","url":"https://fory.apache.org/security/#cve-2026-48207-pyfory-reduceserializer-deserializationpolicy-bypass"},{"type":"PACKAGE","url":"https://github.com/apache/fory"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2026/05/21/10"},{"type":"PACKAGE","url":"https://pypi.org/project/pyfory"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-m5gw-83w2-7749"}],"affected":[{"package":{"name":"pyfory","ecosystem":"PyPI","purl":"pkg:pypi/pyfory"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0.13.0"},{"fixed":"1.0.0"}]}],"versions":["0.13.0","0.13.1","0.13.2","0.14.0","0.14.1","0.15.0","0.16.0","0.17.0"],"database_specific":{"source":"https://github.com/pypa/advisory-database/blob/main/vulns/pyfory/PYSEC-2026-2984.yaml"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}