THREAT OPS › Threat News › [GHSA] GHSA-59fj-m2j6-hcxh (high) — Glances: `--disable-config-exec` does not cover on-alert action commands (incomplete fix of CVE-2026-53925)
[GHSA] GHSA-59fj-m2j6-hcxh (high) — Glances: `--disable-config-exec` does not cover on-alert action commands (incomplete fix of CVE-2026-53925)
GHSA-59fj-m2j6-hcxh Severity: high CVE: CVE-2026-68519
Glances: `--disable-config-exec` does not cover on-alert action commands (incomplete fix of CVE-2026-53925)
## Summary In Glances 4.5.5 the `--disable-config-exec` flag was extended (GHSA-3vwc-qwhc-3mj7) to stop `secure_popen()` from interpreting the shell operators `&&`, `|` and `>` in **AMP** command values taken from the configuration fil
Indicators of compromise
- CVE-2026-53925cve
- CVE-2026-68519cve
Original source: https://github.com/advisories/GHSA-59fj-m2j6-hcxh