CVE-2026-14959
Critical · CVSS 9.1- CVSS
- 9.1
- nvd
- EPSS
- 1.04%
- 61th pct
- KEV
- No
- Class
- kernel local
- CWE-78
Description
IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to execute arbitrary code due to shell command injection.
References
Status: profiled · ingested 2026-08-05T18:00:56.000Z