CVE-2026-88886 | renovatebot Renovate gradle-wrapper distributionUrl os command injection

SecurityVulns

A vulnerability categorized as problematic has been discovered in renovatebot Renovate. Affected is an unknown function of the component gradle-wrapper. The manipulation of the argument distributionUrl results in os command injection.

This vulnerability is known as CVE-2026-88886. Attacking locally is a requirement. No exploit is available.VulDB Recent EntriesRead More