CVE-2026-72590 UNKNOWN

CVE-2026-72590

Published: 2026-08-10

Description

An OS command injection vulnerability in alseambusher/crontab-ui through 0.4.2 allows an unauthenticated remote attacker to inject arbitrary cron job entries by sending a crafted GET request to /crontab with URL-encoded newlines in the env_vars parameter.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…