CVE-2026-66297 | livebook-dev Livebook up to 0.13.0/0.18.6/0.19.0/0.19.8 DeploymentGroupAgentComponent deployment_group_agent_component.ex os command injection

SecurityVulns

A vulnerability described as problematic has been identified in livebook-dev Livebook up to 0.13.0/0.18.6/0.19.0/0.19.8. Affected by this issue is the function LivebookWeb.Hub.Teams.DeploymentGroupAgentComponent.docker_instructions of the file lib/livebook_web/live/hub/teams/deployment_group_agent_component.ex of the component DeploymentGroupAgentComponent. Executing a manipulation can lead to os command injection.

This vulnerability appears as CVE-2026-66297. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More