High severity8.4NVD Advisory· Published May 28, 2024· Updated Apr 15, 2026
CVE-2024-28886
CVE-2024-28886
Description
OS command injection vulnerability exists in UTAU versions prior to v0.4.19. If a user of the product opens a crafted UTAU project file (.ust file), an arbitrary OS command may be executed.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.