← Back to CVE search

CVE-2026-66145

Description

An unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510.1044) and earlier versions which allows remote attacker to read sensitive data and perform arbitrary file write via zipslip.

CVSS 9.1EPSS 0%Risk 0.91
View source
Published
2026-08-11 20:18:37
Last modified
2026-08-11 22:18:49
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N