Critical severity9.8NVD Advisory· Published Aug 17, 2026· Updated Sep 9, 2026
CVE-2026-67919
CVE-2026-67919
Description
An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.java, installFromUri method, and DefaultPluginApplicationContextFactory components
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.