What is CVE-2026-19245?
A vulnerability was discovered in HKUDS nanobot up to version 0.2.1, within the ExecTool._prepare_command function in the Login-shell Environment Handler component, leading to information disclosure. This flaw requires local access and may allow attackers to access sensitive data. Users are advised to update to the latest patched version immediately.
Azərbaycanca: HKUDS nanobot-un 0.2.1 versiyasına qədər olan versiyalarında Login-shell Environment Handler komponentində ExecTool._prepare_command funksiyasında informasiya sızması zəifliyi aşkar edilib. Lokal giriş tələb edən bu qüsur vasitəsilə həssas məlumatlar əldə oluna bilər. İstifadəçilərə dərhal ən son versiyaya yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-200
FAQ2
Which versions of HKUDS nanobot are affected by CVE-2026-19245?
This information disclosure vulnerability affects all versions of HKUDS nanobot up to version 0.2.1.
What is the prerequisite for exploiting CVE-2026-19245?
Exploiting this flaw requires local access.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.