news.mlab.sh
Vulnerabilities
Vulnerability

CVE-2026-66147

Reference data from vuln.mlab.sh, coverage from our own index.

CVSS
9.4 Critical
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Risk score
75.2
Published
2026-08-11
Status
Awaiting Analysis

An unauthenticated command injection vulnerability was identified in the GMS Dispatcher Service in GMS 9.5.1 and earlier versions which allows remote attacker to perform remote code execution through specially crafted requests.

Weaknesses

CWE-94

Coverage 3

Advisories and references