PT-2026-69148 · Hkuds · Nanobot

·

CVE-2026-19245

·

Published

2026-08-07

·

Updated

2026-08-07

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions HKUDS nanobot versions prior to 0.3.0
Description A flaw in the Login-shell Environment Handler allows local attackers to cause information disclosure. The issue exists in the ExecTool. prepare command() function within the nanobot/agent/tools/shell.py file. This occurs because shell startup files reintroduce environment variables when command execution defaults to a login shell.
Recommendations Update to version 0.3.0.

Exploit

Fix

Information Disclosure

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-19245

Affected Products

Nanobot