CVE-2026-48853 | elixir-grpc 0.x erlpack.ex deserialization (GHSA-grp7-v8xh-rj7h / Nessus ID 321429)
A vulnerability was found in elixir-grpc grpc 0.x. It has been rated as critical. This issue affects some unknown processing of the file lib/grpc/codec/erlpack.ex. The manipulation leads to deserialization.
This vulnerability is traded as CVE-2026-48853. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.