Teamviewer · Teamviewer Host · CVE-2026-19042
**Name of the Vulnerable Software and Affected Versions**
TeamViewer Full Client and Host for Linux versions prior to 15.81.5
**Description**
A command injection issue exists that allows a remote attacker to execute arbitrary commands with the privileges of the current user. This occurs when a user clicks a specially crafted URL sent via the out-of-session chat feature. Command injection is a flaw where an application allows an attacker to execute unauthorized system commands on the host operating system.
**Recommendations**
Update TeamViewer Full Client and Host for Linux to version 15.81.5 or later.