CVE-2025-24016 | Wazuh up to 4.9.0 common.py as_wazuh_object deserialization (Nessus ID 235712)
A vulnerability, which was classified as critical, has been found in Wazuh up to 4.9.0. This issue affects the function as_wazuh_object of the file framework/wazuh/core/cluster/common.py. The manipulation leads to deserialization.
The identification of this vulnerability is CVE-2025-24016. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.