← Back to CVE search

CVE-2026-39087

ntfy

Description

An issue in Ntfy ntfy.sh before v.2.21 allows a remote attacker to execute arbitrary code via the parseActions function

CVSS 9.8EPSS 0.272%Risk 1
View source
Published
2026-04-23 16:16:25
Affected versions
<2.21
Type
Package
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H