PT-2026-93881 · Git+1 · Nuclei

·

CVE-2026-92718

·

Published

2026-09-16

·

Updated

2026-09-16

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Nuclei versions prior to 3.11.1
Description The software caches template signature verification based solely on file modification time, omitting content checksums. This allows an attacker to replace verified templates with unsigned malicious content and restore the original modification time to bypass signature checks, leading to the execution of arbitrary operating system commands.
Recommendations Update to version 3.11.1 or later.

Exploit

Fix

Improper Verification of Cryptographic Signature

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-92718

Affected Products

Nuclei