CVE-2026-31386

Publication date

2026-03-16 05:21:13

Family

jpcert

State

PUBLISHED

Description

OpenLiteSpeed and LSWS Enterprise provided by LiteSpeed Technologies contain an OS command injection vulnerability. An arbitrary OS command may be executed by an attacker with the administrative privilege.