Actively Exploited Vulnerabilities
Sitcore XP contains an insecure deserialization vulnerability which can allow for remote code execution.
Apply updates per vendor instructions.
CWE-502