THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-59fj-m2j6-hcxh (high) — Glances: `--disable-config-exec` does not cover on-alert action commands (incomplete fix of CVE-2026-53925)

[GHSA] GHSA-59fj-m2j6-hcxh (high) — Glances: `--disable-config-exec` does not cover on-alert action commands (incomplete fix of CVE-2026-53925)

medgithub_advisoriesPublished 2026-08-17

GHSA-59fj-m2j6-hcxh Severity: high CVE: CVE-2026-68519

Glances: `--disable-config-exec` does not cover on-alert action commands (incomplete fix of CVE-2026-53925)

## Summary In Glances 4.5.5 the `--disable-config-exec` flag was extended (GHSA-3vwc-qwhc-3mj7) to stop `secure_popen()` from interpreting the shell operators `&&`, `|` and `>` in **AMP** command values taken from the configuration fil

Indicators of compromise

Original source: https://github.com/advisories/GHSA-59fj-m2j6-hcxh