VYPR

sh

by Linux

CVEs (1)

  • CVE-2026-54552higJul 17, 2026
    risk 0.45cvss epss

    ### Impact The `_uid` option performed an incomplete privilege drop on Linux/Unix-like systems. When `sh` was run from a process with elevated privileges, such as root, and a command was launched with `_uid=`, the child process changed its UID and primary GID…