Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 15 May 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection Vulnerability in CFEngine before 3.21.8, 3.24.3, and 3.27.0 |
Fri, 15 May 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection in CFEngine Enterprise/Community Before 3.21.8, 3.24.3, and 3.27.0 | |
| Weaknesses | CWE-78 |
Fri, 15 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 | |
| Metrics |
cvssV3_1
|
Thu, 14 May 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection in CFEngine Enterprise/Community Before 3.21.8, 3.24.3, and 3.27.0 | |
| Weaknesses | CWE-78 |
Thu, 14 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Northern.tech CFEngine Enterprise and Community before 3.21.8, 3.24.3, and 3.27.0 allows Command injection. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-15T13:30:12.523Z
Reserved: 2026-01-24T00:00:00.000Z
Link: CVE-2026-24712
Updated: 2026-05-15T13:30:07.058Z
Status : Awaiting Analysis
Published: 2026-05-14T15:16:44.977
Modified: 2026-05-15T15:16:50.463
Link: CVE-2026-24712
No data.
OpenCVE Enrichment
Updated: 2026-05-15T18:30:05Z