B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-41011 - BOSH OS Command Injection

CVE ID :CVE-2026-41011 Published : June 4, 2026, 2:26 a.m. | 47 minutes ago Description :PackagePersister.validate_tgz builds "tar -tf #{tgz} 2>&1" where tgz = File.join(release_dir, 'packages', "#{name}.tgz") and name = package_meta['name'] comes directly from release.MF inside the uploaded...

Original-Artikel öffnen Zurück zur Übersicht