A potential command injection vulnerability was reported in the Tianxi AI Agent PC Application, distributed exclusively in the Chinese market, that could allow operating system commands to be executed if a local user opens a specially crafted link that is handled by the application.
References
| Link | Resource |
|---|---|
| https://iknow.lenovo.com.cn/detail/442249 |
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-10 21:17
Updated : 2026-09-11 15:17
NVD link : CVE-2026-19136
Mitre link : CVE-2026-19136
CVE.ORG link : CVE-2026-19136
JSON object : View
Products Affected
No product.
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
