THREAT OPS › Threat News › [NVD] CVE-2026-44724 (HIGH 7.8) — systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation is vulnerable to command injection in networkInterfaces() when an active NetworkManager connection profile name contains shell metacharacters. The vulnerable v
[NVD] CVE-2026-44724 (HIGH 7.8) — systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation is vulnerable to command injection in networkInterfaces() when an active NetworkManager connection profile name contains shell metacharacters. The vulnerable v
CVE-2026-44724 CVSS: 7.8 HIGH Published: 2026-05-27T20:16:37.617
systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation is vulnerable to command injection in networkInterfaces() when an active NetworkManager connection profile name contains shell metacharacters. The vulnerable value is obtained internally from real nmcli device sta
Indicators of compromise
- CVE-2026-44724cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-44724