Unrated severityNVD Advisory· Published Mar 16, 2026· Updated Mar 16, 2026
CVE-2026-31386
CVE-2026-31386
Description
OpenLiteSpeed and LSWS Enterprise provided by LiteSpeed Technologies contain an OS command injection vulnerability. An arbitrary OS command may be executed by an attacker with the administrative privilege.
Affected products
4- LiteSpeed Technologies/LSWS Enterprisev5Range: all versions
- LiteSpeed Technologies/OpenLiteSpeedv5Range: all versions
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.