Lxsmnsyc develops the Seroval product, a modestly represented offering in its market segment, with a concentrated vulnerability profile centered on resource-management and data-handling issues. The recurring weakness classes—resource exhaustion without throttling, untrusted deserialization, prototype pollution, and inefficient regular expression processing—reflect application-layer input parsing and object manipulation risks typical of dynamic runtime environments. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Lxsmnsyc over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-23736CRITICAL seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities. In versions 1.4.0 and below, due to improper input validation, a mali | Jan 21, 2026 | 9.8 | 34 | NO | NO |
CVE-2026-24006HIGH Seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities. In versions 1.4.0
and below, serialization of objects with extreme de | Jan 22, 2026 | 7.5 | 28 | NO | NO |
CVE-2026-23737HIGH seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities. In versions 1.4.0 and below, improper input handling in the JSON dese | Jan 21, 2026 | 7.5 | 28 | NO | NO |
CVE-2026-23957HIGH seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities. In versions 1.4.0
and below, overriding encoded array lengths by repl | Jan 22, 2026 | 7.5 | 26 | NO | NO |
CVE-2026-23956HIGH seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities. In versions 0.2.0 through 1.4.0, overriding RegExp serialization with | Jan 22, 2026 | 7.5 | 26 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Lxsmnsyc.
Media articles that mention a CVE ID that affects a product developed by Lxsmnsyc — matched by CVE ID, not by vendor name.