CVE-2026-16630 | syncfusion ej2-javascript-ui-controls up to 33.2.3 package.json child_process.exec os command injection (Issue 215)
A vulnerability marked as critical has been reported in syncfusion ej2-javascript-ui-controls up to 33.2.3. This affects the function child_process.exec of the file package.json. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2026-16630. An attack has to be approached locally. Furthermore, there is an exploit available.VulDB Recent EntriesRead More