High severity7.1NVD Advisory· Published Aug 17, 2026
CVE-2026-68519
CVE-2026-68519
Description
Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, GlancesActions.run() in glances/actions.py ignores --disable-config-exec for on-alert action commands and invokes secure_popen() with shell operators enabled, allowing configured redirection, command chaining, or pipes to execute when an alert triggers. This issue is fixed in 4.5.6.
Affected products
1Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.