What is CVE-2026-69100?
CVE-2026-69100 is a critical remote code execution (RCE) vulnerability in the GlueFactory component of LAMP Rapid Development Platform through version 5.6.2, allowing unsandboxed Groovy script execution from database template fields. This flaw enables attackers to gain full control over the affected system by injecting or manipulating malicious scripts. Immediate patching to the version containing commit 84b0c27 is required.
Azərbaycanca: CVE-2026-69100, LAMP Rapid Development Platform-un 5.6.2 versiyasına qədər olan versiyalarında GlueFactory komponentində aşkarlanmış kritik uzaqdan kod icrası (RCE) zəifliyidir. Təhlükəsizlik məhdudiyyəti olmayan Groovy skriptləri verilənlər bazası şablonları vasitəsilə icra olunaraq sistemə tam nəzarəti ələ keçirməyə imkan verir. Dərhal commit 84b0c27 ilə gələn düzəliş tətbiq edilməli və platform yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-94
FAQ2
Which versions of LAMP Rapid Development Platform are affected by CVE-2026-69100?
CVE-2026-69100 affects all versions of LAMP Rapid Development Platform up to and including version 5.6.2.
What action is required to remediate CVE-2026-69100?
To remediate the vulnerability, immediate patching to the version containing commit 84b0c27 must be applied.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.