๐Ÿ” CVE Alert

CVE-2026-85696

CRITICAL 9.8

SadTalker OS Command Injection via Audio Filename

CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th

SadTalker contains an OS command injection vulnerability in the video muxing process where uploaded audio filenames are interpolated into ffmpeg commands without proper escaping. Attackers can upload audio files with shell metacharacters in the filename to break out of quoted arguments and execute arbitrary system commands when video generation occurs.

CWE CWE-78
Vendor opentalker
Product sadtalker
Published Sep 4, 2026
Last Updated Sep 10, 2026
Stay Ahead of the Next One

Get instant alerts for opentalker sadtalker

Be the first to know when new critical vulnerabilities affecting opentalker sadtalker are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

OpenTalker / SadTalker
0 โ‰ค 0.0.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/OpenTalker/SadTalker/issues/1043 github.com: https://github.com/OpenTalker/SadTalker github.com: https://github.com/OpenTalker/SadTalker/blob/v0.0.2/src/utils/videoio.py vulncheck.com: https://www.vulncheck.com/advisories/sadtalker-os-command-injection-via-audio-filename

Credits

George Chen