What is CVE-2026-68519?
This vulnerability affects Glances open-source monitoring tool versions prior to 4.5.6, where the '--disable-config-exec' flag is ignored during on-alert action commands. It allows shell operators, enabling potential command redirection or chaining. Users should upgrade to version 4.5.6 or later to mitigate the issue.
Azərbaycanca: CVE-2026-68519, açıq mənbəli Glances monitorinq alətinin 4.5.6 versiyasından əvvəlki versiyalarında aşkarlanmış bir boşluqdur. Bu qüsur, xəbərdarlıq (alert) əmrlərində '--disable-config-exec' parametri nəzərə alınmadığı üçün shell operatorlarının işə düşməsinə şərait yaradır. İstifadəçilər Glances-i ən son 4.5.6 versiyasına yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-77
FAQ2
Which versions of Glances are affected by CVE-2026-68519?
This vulnerability affects Glances versions prior to 4.5.6.
How can CVE-2026-68519 be mitigated?
Users should upgrade to Glances version 4.5.6 or later.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.