CVE-2026-90621 | ipa-lab HackingBuddyGPT up to 0.5.0 ssh_run_command.py ssh_run_command os command injection (Issue 150)

SecurityVulns

A vulnerability, which was classified as critical, was found in ipa-lab HackingBuddyGPT up to 0.5.0. This affects the function ssh_run_command of the file src/hackingBuddyGPT/extensions/ssh_run_command.py. Such manipulation leads to os command injection.

This vulnerability is uniquely identified as CVE-2026-90621. The attack can be launched remotely. Moreover, an exploit is present.

The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More