An unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510.1044) and earlier versions which allows remote attacker to read sensitive data and perform arbitrary file write via zipslip.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-11 20:18
Updated : 2026-08-28 18:58
NVD link : CVE-2026-66145
Mitre link : CVE-2026-66145
CVE.ORG link : CVE-2026-66145
JSON object : View
Products Affected
No product.
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
