CVE-2026-84233High· 7.0▾ TwilightA flaw was found in rpm. A local attacker could supply a specially crafted `.gem` filename containing RPM macro syntax. When a user or automated workflow invokes `rpmuncompress -x` on this file, the macro expansion occurs during command …
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 38.5 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.2%
A flaw was found in rpm. A local attacker could supply a specially crafted .gem filename containing RPM macro syntax. When a user or automated workflow invokes rpmuncompress -x on this file, the macro expansion occurs during command construction. This allows the attacker to execute arbitrary commands with the privileges of the invoking account, leading to a compromise of confidentiality, integrity, and availability.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-12545Medium· 6.7A flaw was found in rubygem-hammer_cli
CVE-2026-12542Medium· 5.3A flaw was found in Foreman
CVE-2026-12541High· 8.2A flaw was found in Foreman
CVE-2026-12540High· 8.2A flaw was found in Foreman
CVE-2026-12405High· 8.8A flaw was found in rubygem-foreman_remote_execution
CVE-2026-86330High· 7.2An OS command injection flaw was found in the set_hostname_internal function of NooBaa's cluster_internal_api