Critical Alert 1 Active Exploit Detected Today

CVE-2026-8037 Progress LoadMaster Command Injection Vulnerability →
Powered by CVE Watchtower
×
August 8, 2026

CVE Watchtower


← Back to CVE List

CVE-2025-69195NVD

Vulnerability Summary

A flaw was found in GNU Wget2. This vulnerability, a stack-based buffer overflow, occurs in the filename sanitization logic when processing attacker-controlled URL paths, particularly when filename restriction options are active. A remote attacker can exploit this by providing a specially crafted URL, which, upon user interaction with wget2, can lead to memory corruption. This can cause the application to crash and potentially allow for further malicious activities.
Severity Level
HIGH(7.6)
Published Date
Jan 9, 2026
Last Modified
Mar 5, 2026
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
0.11%Probability
Root Weakness (CWE)
Refer to the official MITRE database for detailed architectural specifications regarding this weakness.
CVSS v3.1 Base Metrics
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionRequired
ScopeUnchanged
ConfidentialityLow
IntegrityLow
AvailabilityHigh