CVE-2026-101045: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in fleetdm fleet
CVE-2026-101045 is an OS command injection vulnerability in Fleet's app install and uninstall scripts for macOS. The vulnerability arises because Fleet-generated scripts, created from Homebrew cask metadata before 2026-08-19, did not properly escape shell metacharacters at all interpolation points. This flaw could allow an attacker who manages to insert crafted metadata into an upstream Homebrew cask to execute arbitrary commands as root on managed macOS hosts during app installation or uninstallation. The vulnerability requires the malicious metadata to pass both upstream Homebrew cask review and Fleet's automated ingestion review. The issue was fixed on 2026-08-19 by fully escaping cask metadata in all script interpolation sites, with the fix included in Fleet version 4.92.0. Because manifests are centrally generated and distributed, remediation was applied automatically without customer action.
AI Analysis
Technical Summary
Fleet's macOS app install and uninstall scripts generated from Homebrew cask metadata before 2026-08-19 improperly neutralized special shell characters at some interpolation sites. This allowed crafted metadata containing shell metacharacters (e.g., command substitution) to be included in scripts executed as root on managed hosts, leading to OS command injection. Exploitation requires an attacker to insert malicious metadata into an upstream Homebrew cask and have it pass both upstream and Fleet's ingestion reviews. The vulnerability was addressed by fully escaping all cask metadata interpolation sites starting 2026-08-19, with the fix deployed centrally and included in Fleet v4.92.0.
Potential Impact
An attacker who can insert crafted metadata into an upstream Homebrew cask could achieve arbitrary command execution as root on managed macOS hosts during app install or uninstall operations. This could lead to full system compromise on affected hosts. However, exploitation requires the malicious metadata to pass both upstream Homebrew cask review and Fleet's ingestion pipeline review, which limits the attack surface. The vulnerability has a high CVSS 4.0 score of 8.9.
Mitigation Recommendations
The vulnerability was fixed on 2026-08-19 by fully escaping all cask metadata in Fleet's script generation pipeline. This fix was deployed centrally and included in Fleet version 4.92.0. Because manifests are generated centrally and distributed as pre-built content, remediation was applied automatically with no customer action required. Users should ensure they are running Fleet v4.92.0 or later to benefit from the fix.
CVE-2026-101045: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in fleetdm fleet
Description
CVE-2026-101045 is an OS command injection vulnerability in Fleet's app install and uninstall scripts for macOS. The vulnerability arises because Fleet-generated scripts, created from Homebrew cask metadata before 2026-08-19, did not properly escape shell metacharacters at all interpolation points. This flaw could allow an attacker who manages to insert crafted metadata into an upstream Homebrew cask to execute arbitrary commands as root on managed macOS hosts during app installation or uninstallation. The vulnerability requires the malicious metadata to pass both upstream Homebrew cask review and Fleet's automated ingestion review. The issue was fixed on 2026-08-19 by fully escaping cask metadata in all script interpolation sites, with the fix included in Fleet version 4.92.0. Because manifests are centrally generated and distributed, remediation was applied automatically without customer action.
CVSS v4.0
Score 8.9high
Affected software
fleetdm
fleet
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
Fleet's macOS app install and uninstall scripts generated from Homebrew cask metadata before 2026-08-19 improperly neutralized special shell characters at some interpolation sites. This allowed crafted metadata containing shell metacharacters (e.g., command substitution) to be included in scripts executed as root on managed hosts, leading to OS command injection. Exploitation requires an attacker to insert malicious metadata into an upstream Homebrew cask and have it pass both upstream and Fleet's ingestion reviews. The vulnerability was addressed by fully escaping all cask metadata interpolation sites starting 2026-08-19, with the fix deployed centrally and included in Fleet v4.92.0.
Potential Impact
An attacker who can insert crafted metadata into an upstream Homebrew cask could achieve arbitrary command execution as root on managed macOS hosts during app install or uninstall operations. This could lead to full system compromise on affected hosts. However, exploitation requires the malicious metadata to pass both upstream Homebrew cask review and Fleet's ingestion pipeline review, which limits the attack surface. The vulnerability has a high CVSS 4.0 score of 8.9.
Mitigation Recommendations
The vulnerability was fixed on 2026-08-19 by fully escaping all cask metadata in Fleet's script generation pipeline. This fix was deployed centrally and included in Fleet version 4.92.0. Because manifests are generated centrally and distributed as pre-built content, remediation was applied automatically with no customer action required. Users should ensure they are running Fleet v4.92.0 or later to benefit from the fix.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- VulnCheck
- Date Reserved
- 2026-09-27T15:48:49.472Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6ab9c994f7a7c54106f51d55
Added to database: 09/28/2026, 01:57:40 UTC
Last enriched: 09/28/2026, 01:58:40 UTC
Last updated: 09/28/2026, 02:07:47 UTC
Views: 4
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.