Beveiligingsadvies

CVE-2026-41015

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-04-16 02:35:47
Laatst bijgewerkt 2026-04-16 13:15:26
Toegewezen door mitre
CVSS-score 7.4
Status PUBLISHED

Beschrijving

radare2 before 9236f44, when configured on UNIX without SSL, allows command injection via a PDB name to rabin2 -PP. NOTE: although users are supposed to use the latest version from git (not a release), the date range for the vulnerable code was less than a week, occurring after 6.1.2 but before 6.1.3.