VYPR

yggdrasil-worker-package-manager

by Red Hat

Source repositories

CVEs (1)

  • CVE-2026-18157HigJul 31, 2026
    risk 0.44cvss 7.8epss 0.00

    A flaw was found in yggdrasil-worker-package-manager. A local attacker with existing access to the system could exploit an argument injection vulnerability in the APT backend. This allows specially crafted package names, which begin with a hyphen, to be misinterpreted as command…