CVE-2026-76761 | chenhg5 cc-connect up to 1.4.1 Management API core/engine.go shellExecCommand exec os command injection (Issue 1489)
A vulnerability described as critical has been identified in chenhg5 cc-connect up to 1.4.1. This affects the function shellExecCommand of the file core/engine.go of the component Management API. Such manipulation of the argument exec leads to os command injection.
This vulnerability is referenced as CVE-2026-76761. It is possible to launch the attack remotely. Furthermore, an exploit is available.
The reported GitHub issue was closed automatically due to inactivity.VulDB Recent EntriesRead More