Critical severity9.9NVD Advisory· Published Jul 21, 2026· Updated Aug 18, 2026
CVE-2026-64879
CVE-2026-64879
Description
A filename supplied during file upload is not properly sanitized before being used in system command execution, allowing an attacker to inject shell metacharacters and achieve command injection via the audit file upload functionality.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
1- www.tenable.com/security/tns-2026-19nvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.