CVE-2026-64881
EUVD-2026-4639721.07.2026, 21:16
The audit file upload handler does not sanitize filenames, allowing shell metacharacters to flow into system command execution. This input validation failure enables command injection when chained with a related vulnerability.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| tenable | security_center | 𝑥 < 6.8.0 | CNA |