6.6
CVE-2026-67438
- EPSS 1%
- Veröffentlicht 29.07.2026 20:53:09
- Zuletzt bearbeitet 30.07.2026 19:21:23
- CVE-Watchlists
- Unerledigt
OliveTin OS Command Injection via Custom regex: Argument Type Bypassing Shell Safety Check
OliveTin gives access to predefined shell commands from a web interface. From 3000.2.0 until 3000.17.0, the service/internal/executor/arguments.go checkShellArgumentSafety function does not treat regex: custom argument types as unsafe for Shell mode actions, allowing values that pass typeSafetyCheckRegex to be interpolated by wrapCommandInShell into an sh -c command string and enabling OS command injection. This issue is fixed in version 3000.17.0.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerOliveTin
≫
Produkt
OliveTin
Version
>= 3000.2.0, < 3000.17.0
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1% | 0.592 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| security-advisories@github.com | 6.6 | 0.7 | 5.9 |
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.
https://github.com/OliveTin/OliveTin/releases/tag/3000.17.0
https://github.com/OliveTin/OliveTin/security/advisories/GHSA-xc5w-4v5w-7x65
https://github.com/OliveTin/OliveTin/commit/995ff79736f2bccc364448a3ece84087b550b232