Threats Tagged 'cve-2026-47359'
View all threats tagged with 'cve-2026-47359'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-47359'
Click on any threat for detailed analysis and mitigation recommendations
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Apache CloudStack's NAS backup provider… (CVE-2026-47359)CVE-2026-47359 0 Apache CloudStack contains an OS Command Injection vulnerability in its NAS backup provider plugin. The addBackupRepository and updateBackupRepository APIs accept unsanitized command options, allowing a malicious operator to inject arbitrary commands executed on the KVM hypervisor host during backup restore operations. This affects versions from 4.20.0.0 through 4.20.3.0 and 4.21.0.0 through 4.22.1.0. Fixed versions are 4.20.3.1 and 4.22.1.1 or later. Join the discussion | GCVE Database | 08/21/2026, 09:32:04 UTC Added: 08/21/2026, 14:22:27 UTC |
CVE-2026-47359: CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in Apache Software Foundation Apache CloudStackCVE-2026-47359 0 CVE-2026-47359 is an OS command injection vulnerability in Apache CloudStack's NAS backup provider plugin. It affects the addBackupRepository and updateBackupRepository APIs, which accept unsanitized command options. A malicious operator can inject arbitrary commands that execute on the KVM hypervisor host during backup restore operations. The vulnerability affects Apache CloudStack versions from 4.20.0.0 through 4.20.3.0 and 4.21.0.0 through 4.22.1.0. Fixed versions are 4.20.3.1 and 4.22.1.1 or later. Join the discussion | CVE Database V5 | 08/21/2026, 08:30:07 UTC Added: 08/21/2026, 11:03:58 UTC |
Showing 1 to 2 of 2 results