[CYBERDIGEST]
⊞ Dashboard ⚡ Intelligence 📝 Reports 📚 Global Threats 💻 Hack Lab 🗄️ Resources ⌬ 0xJerry's Lab
📡 RSS Feed
System Online

Tag

#Catalyst::View::Wkhtmltopdf

articleCRITICAL 9.0

Critical Shell Command Injection Vulnerability in Catalyst::View::Wkhtmltopdf

A critical vulnerability (CVE-2026-16766) has been discovered in Catalyst::View::Wkhtmltopdf versions before 0.6.1, allowing for shell command injection via PDF render options. This vulnerability is particularly severe as it enables remote code execution (RCE) without authentication. The affected package is no longer actively developed, and users are urged to migrate to alternative solutions. Immediate patching or migration is strongly recommended to prevent potential exploitation.

Jul 26, 20261 source