CVE-2026-88886 | renovatebot Renovate gradle-wrapper distributionUrl os command injection
A vulnerability categorized as problematic has been discovered in renovatebot Renovate. Affected is an unknown function of the component gradle-wrapper. The manipulation of the argument distributionUrl results in os command injection.
This vulnerability is known as CVE-2026-88886. Attacking locally is a requirement. No exploit is available.VulDB Recent EntriesRead More