PT-2026-70204 · Unknown · Streambert

CVE-2026-48046

·

Published

2026-08-11

·

Updated

2026-08-13

CVSS v4.0

9.3

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Streambert versions prior to 2.5.0
Description Streambert is a cross-platform Electron Desktop App used for streaming and downloading video content. The application contains an unvalidated auto-updater URL issue where a compromised renderer process can force the main process to download and execute an arbitrary binary, leading to remote code execution.
Recommendations Update to version 2.5.0.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-48046
GHSA-VJ74-R9XM-37MJ

Affected Products

Streambert