CVE-2026-76060 | ZoneMinder up to 1.38.2 Event Export exec exportFile os command injection

SecurityVulns

A vulnerability classified as critical has been found in ZoneMinder up to 1.38.2. Impacted is the function exec of the component Event Export. Performing a manipulation of the argument exportFile results in os command injection.

This vulnerability was named CVE-2026-76060. The attack may be initiated remotely. There is no available exploit.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More