CVE-2026-94106

CVE-2026-94106 published: getID3 before 1.9.26 contains an OS command injection vulnerability in shell-out handlers that fail to escape filenames in command strings. Attackers can craft malicious filenames containing shell metacharacters to inject arbitrary commands executed with th...

View full NVD advisory → ← Back to CVE watch