🚨 New security advisory:

CVE-2026-26830 affects multiple systems.

• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems

Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-26830-pdf-image-npm-package-os-command-injection

#InfoSec #PatchNow #InfoSecCommunity

Critical: pdf-image npm Package OS Command Injection (CVE-2026-26830) - Critical Fix Required | Yazoul Security

Critical OS command injection vulnerability in pdf-image npm package (up to v2.0.0) allows attackers to execute arbitrary commands on the host server. CVSS 9.8. Immediate update recommended.

Yazoul Security