Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Ruffalo Lavoisier

#35434of 56,335
7.8Total CVSS
Vulnerabilities · 1
PT-2026-48410
7.8
2026-06-10
Ghidra · Ghidra · CVE-2026-52750
**Name of the Vulnerable Software and Affected Versions** Ghidra versions prior to 12.1 **Description** On Windows, improper escaping of `cmd.exe` metacharacters in URL annotation handling allows for command injection. This occurs when malicious URLs are embedded in program comments; if a user clicks these URLs, arbitrary commands can be executed with the privileges of the Ghidra user. **Recommendations** Update to version 12.1 or later.