CVE-2026-57825

In the opam package before 2.5.2 for OCaml, the sandbox protection mechanism can be bypassed because symlinks are mishandled during use of .install files.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-09 04:18

Updated : 2026-09-14 16:17


NVD link : CVE-2026-57825

Mitre link : CVE-2026-57825

CVE.ORG link : CVE-2026-57825


JSON object : View

Products Affected

No product.

CWE
CWE-61

UNIX Symbolic Link (Symlink) Following