THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-4946 (HIGH 8.8) — Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically extracted binary data, resulting in arbitrary command execution when an analyst interacts with the UI. Specifically, the @execute annotation (which is intended for trusted, user-aut

[NVD] CVE-2026-4946 (HIGH 8.8) — Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically extracted binary data, resulting in arbitrary command execution when an analyst interacts with the UI. Specifically, the @execute annotation (which is intended for trusted, user-aut

lownvdPublished 2026-03-29

CVE-2026-4946 CVSS: 8.8 HIGH Published: 2026-03-29T20:16:12.723

Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically extracted binary data, resulting in arbitrary command execution when an analyst interacts with the UI. Specifically, the @execute annotation (which is intended for trusted, user-authored comments) is also parsed in comments generated du

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-4946