OS Command Injection Vulnerability in SecuShare Pro by Openfind
CVE-2026-107459

9.3CRITICAL

Key Information:

Vendor

Openfind

Vendor
CVE Published:
8 October 2026

What is CVE-2026-107459?

SecuShare Pro, developed by Openfind, is susceptible to an OS Command Injection vulnerability, enabling unauthenticated remote attackers to execute arbitrary operating system commands on the server. This flaw poses significant risks to the integrity and security of the server environment, allowing malicious entities to potentially manipulate system operations and access sensitive information.

Affected Version(s)

SecuShare Pro 4

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.