CVE-2026-54674 | FreePBX up to 16.0.38/17.0.6 User Control Panel os command injection

SecurityVulns

A vulnerability was found in FreePBX up to 16.0.38/17.0.6 and classified as critical. This vulnerability affects unknown code of the component User Control Panel. Such manipulation leads to os command injection.

This vulnerability is listed as CVE-2026-54674. The attack may be performed from remote. There is no available exploit.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More