CVE-2026-50979
HIGH 8.1EPSS 1.4%
A command injection vulnerability in the 'advanced/curl' component of Osbil Technology oPanel v1.19.50 and earlier allows authenticated attackers to execute arbitrary shell commands via the 'url' parameter
- CVSS v3.1
- 8.1 HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N - EPSS
- 1.43% chance of exploitation in the next 30 days, 71th percentile
- Published
- 2026-08-28
Proof-of-concept exploits (1)
- bugresearch/CVE-2026-509790★ · 2026-07-10