GHSA-m4v3-5453-5w8rCriticalCVSS 9.8

An OS command injection vulnerability in the /stream-to-vlc Express route in hitarth-gg Zenshin...

Published
May 19, 2026
Last Modified
May 20, 2026

🔗 CVE IDs covered (1)

📋 Description

An OS command injection vulnerability in the /stream-to-vlc Express route in hitarth-gg Zenshin before 2.7.0 allows remote attackers to execute arbitrary commands via the url parameter.

🔗 References (5)