Systeminformation
This hub aggregates every CVE we track for Systeminformation, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
14
CVEs tracked
1
Critical
11
High
1
In CISA KEV
Severity distribution
HIGH11MEDIUM2CRITICAL1
Monthly trend
0
0
0
1
0
0
0
0
0
0
0
0
0
0
0
1
0
2
0
0
1
0
1
0
2024-092026-08
Latest CVEs
The 14 most recently published vulnerabilities affecting Systeminformation.
- CVE-2026-50289systeminformation: OS command injection in networkInterfaces() via interfaces(5) source-directive path on Linux8.8
- CVE-2026-44724systeminformation: Linux command injection in networkInterfaces() via unsanitized NetworkManager connection profile name7.8
- CVE-2026-26318systeminformation has Command Injection via Unsanitized `locate` Output in `versions()`8.8
- CVE-2026-26280Systeminformation has a Command Injection via unsanitized interface parameter in wifi.js retry path8.4
- CVE-2025-68154Command Injection in fsSize() on Windows8.1
- CVE-2024-56334Command injection vulnerability in getWindowsIEEE8021x (SSID) function in systeminformation7.8
- CVE-2023-42810systeminformation SSID Command Injection Vulnerability9.8
- CVE-2020-26300Command injection in systeminformation5.9
- CVE-2021-21388Command Injection Vulnerability in systeminformation8.9
- CVE-2021-21315Command Injection VulnerabilityKEV7.1
- CVE-2020-26274Command Injection Vulnerability in systeminformation6.4
- CVE-2020-26245Prototype Pollution leading to Command Injection in systeminformation8.1
- CVE-2020-7778Prototype Pollution7.3
- CVE-2020-7752Command Injection8.8
Product normalization is registry-driven with AI assist and human review. How it works