CVE-2026-12542Medium· 5.3▾ SunlitA flaw was found in Foreman. The foreman-tail utility is vulnerable to OS command injection due to the unsafe use of the eval command. The script takes user-supplied arguments and incorporates them directly into a string that is then exe…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 29.2 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
A flaw was found in Foreman. The foreman-tail utility is vulnerable to OS command injection due to the unsafe use of the eval command. The script takes user-supplied arguments and incorporates them directly into a string that is then executed by eval to expand file paths. Because the input is not sanitized or quoted, a local attacker can inject shell metacharacters (e.g., ;, &, |) to execute arbitrary system commands.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-12541High· 8.2A flaw was found in Foreman
CVE-2026-12540High· 8.2A flaw was found in Foreman
CVE-2026-12545Medium· 6.7A flaw was found in rubygem-hammer_cli
CVE-2026-96659Critical· 9.1A flaw was found in Foreman
CVE-2026-96658Critical· 9.9A flaw was found in Foreman
CVE-2026-12544High· 7.7A flaw was found in Foreman