CVE-2026-52877 | truelockmc Streambert up to 2.5.x Open-external IPC src/ipc/downloads.js shell.openExternal url input validation
A vulnerability classified as critical has been found in truelockmc Streambert up to 2.5.x. The impacted element is the function shell.openExternal of the file src/ipc/downloads.js of the component Open-external IPC Handler. The manipulation of the argument url leads to improper input validation.
This vulnerability is traded as CVE-2026-52877. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More