The OpenRGB network protocol allows to write attacker controlled strings into arbitrary file system paths (extension of CVE-2026-59682). This allows either a full system compromise from local or remote (if the daemon is running as root) or a full account takeover (if the daemon is running in user context).
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-26 10:16
Updated : 2026-09-01 20:54
NVD link : CVE-2026-59683
Mitre link : CVE-2026-59683
CVE.ORG link : CVE-2026-59683
JSON object : View
Products Affected
No product.
CWE
CWE-73
External Control of File Name or Path
