Medium severityNVD Advisory· Published Oct 5, 2026
CVE-2026-103511
CVE-2026-103511
Description
Perforce P4 Search prior to 2026.4.2 does not validate file names supplied to its extension installation feature. An attacker with super-user or service-token privileges can write files with arbitrary content to the P4 Search installation directory.
Affected products
1- Range: <2026.4.2
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.