THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-44724 (HIGH 7.8) — systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation is vulnerable to command injection in networkInterfaces() when an active NetworkManager connection profile name contains shell metacharacters. The vulnerable v

[NVD] CVE-2026-44724 (HIGH 7.8) — systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation is vulnerable to command injection in networkInterfaces() when an active NetworkManager connection profile name contains shell metacharacters. The vulnerable v

lownvdPublished 2026-05-27

CVE-2026-44724 CVSS: 7.8 HIGH Published: 2026-05-27T20:16:37.617

systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation is vulnerable to command injection in networkInterfaces() when an active NetworkManager connection profile name contains shell metacharacters. The vulnerable value is obtained internally from real nmcli device sta

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-44724