CVE-2026-68489 UNKNOWN

CVE-2026-68489

Published: 2026-09-14

Description

Static Code Injection in Plesk extensions "Ruby" before 1.6.6 and "Node.js Toolkit" before 2.5.0 allows remote authenticated users to execute arbitrary code as root via custom environment variables.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…