LIVE · cybersecurity feed
Live wire
cve recordcritical

CVE-2026-66145

Published
CVSS9.1
Severitycritical
WeaknessCWE-94
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Description

An unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510.1044) and earlier versions which allows remote attacker to read sensitive data and perform arbitrary file write via zipslip.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-66145

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-66145.