CVE-2026-12545Medium· 6.7▾ SunlitA flaw was found in rubygem-hammer_cli. A command injection vulnerability exists in Hammer CLI and the Railties (Ruby on Rails) component distributed with Satellite due to the insecure interpolation of the $EDITOR environment variable in…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 36.9 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
A flaw was found in rubygem-hammer_cli. A command injection vulnerability exists in Hammer CLI and the Railties (Ruby on Rails) component distributed with Satellite due to the insecure interpolation of the $EDITOR environment variable into the Ruby system() method. By passing a single interpolated string to system(), the application invokes a system shell (/bin/sh) that interprets shell metacharacters (e.g., ;, |, &).
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-12542Medium· 5.3A flaw was found in Foreman
CVE-2026-12541High· 8.2A flaw was found in Foreman
CVE-2026-12540High· 8.2A flaw was found in Foreman
CVE-2026-12405High· 8.8A flaw was found in rubygem-foreman_remote_execution
CVE-2026-56098Medium· 4.3A flaw was found in rubygem-katello
CVE-2026-56097Medium· 6.5A flaw was found in rubygem-katello