B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-33646 - mise: Arbitrary Code Execution via Tera Templates in .tool-versions Files (Trust Bypass)

CVE ID :CVE-2026-33646 Published : June 26, 2026, 4:51 p.m. | 4 hours, 19 minutes ago Description :mise manages dev tools like node, python, cmake, and terraform. Prior to 2026.3.10, mise processes .tool-versions files through the Tera template engine during parsing, with the exec() function...

Original-Artikel öffnen Zurück zur Übersicht