CVE-2026-14958
Critical · CVSS 9.1- CVSS
- 9.1
- nvd
- EPSS
- 0.52%
- 41th pct
- KEV
- No
- Class
- kernel local
- CWE-78
Description
IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to execute arbitrary code due to unquoted shell interpolation.
References
Status: profiled · ingested 2026-08-05T18:00:56.000Z