CVE-2026-45322 | Microsoft UFO up to 3.0.0 JSON File ShellReceiver.run_shell os command injection (GHSA-wj72-7w8h-695f)
A vulnerability labeled as critical has been found in Microsoft UFO up to 3.0.0. This affects the function ShellReceiver.run_shell of the component JSON File Handler. Executing a manipulation can lead to os command injection.
The identification of this vulnerability is CVE-2026-45322. The attack can only be executed locally. There is no exploit available.VulDB Recent EntriesRead More