CVE-2026-53534 | JabRef up to 6.0-alpha.5 HTTP Server /better-bibtex/cayw CAYWQueryParams.getCommand command os command injection

SecurityVulns

A vulnerability was found in JabRef up to 6.0-alpha.5. It has been declared as problematic. This affects the function CAYWQueryParams.getCommand of the file /better-bibtex/cayw of the component HTTP Server. Executing a manipulation of the argument command can lead to os command injection.

This vulnerability is handled as CVE-2026-53534. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More