๐Ÿ” CVE Alert

CVE-2026-37281

CRITICAL 9.8
CVSS Score
9.8
EPSS Score
0.1%
EPSS Percentile
32th

An OS command injection vulnerability in the /stream-to-vlc Express route in hitarth-gg Zenshin before 2.7.0 allows remote attackers to execute arbitrary commands via the url parameter.

Vendor n/a
Product n/a
Published May 19, 2026
Last Updated May 20, 2026
Stay Ahead of the Next One

Get instant alerts for n/a n/a

Be the first to know when new critical vulnerabilities affecting n/a n/a are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

n/a / n/a
n/a

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/hitarth-gg/zenshin github.com: https://github.com/hitarth-gg/zenshin/commit/7d31c6edfbac978f0ad44c66d761bab9dcd2fa27 gist.github.com: https://gist.github.com/MitruStefan/cf016709252aabbec7f95b7a70e0cfba